<rss version="2.0"><channel><title>Bugtraq (bugtraq) Mailing List</title>
<link>http://seclists.org/#bugtraq</link>
<description>The premier general security mailing list. Vulnerabilities are often announced here first, so check frequently!</description>
<language>en-us</language><ttl>60</ttl>
<item><title>iSEC Partners Security Advisory - 2008-002-lenovornr - Lenovo Rescue and Recovery 4.20</title><description>Posted by Chris Clark on Oct 10&lt;p&gt;


&lt;p&gt;
iSEC Partners Security Advisory - 2008-002-lenovornr
&lt;br /&gt;
https://www.isecpartners.com
&lt;br /&gt;
--------------------------------------------
&lt;br /&gt;
&lt;p&gt;Lenovo Rescue and Recovery Local Kernel Overflow
&lt;br /&gt;
&lt;p&gt;Vendor: Lenovo
&lt;br /&gt;
Vendor URL: http://www.lenovo.com
&lt;br /&gt;
Versions affected: 4.20 
&lt;br /&gt;
Systems Affected: Windows XP, Windows...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0087.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0087.html</guid>
<pubDate>Fri, 10 Oct 2008 15:24:59 -0700</pubDate></item>
<item><title>[LC-2008-04] Nokia Browser Array Sort Denial Of Service Vulnerability</title><description>Posted by luca.carettoni_at_ikkisoft.com on Oct 10&lt;p&gt;


 (&#39;binary&#39; encoding is not supported, stored as-is)
==================================================== 
&lt;br /&gt;
Security Research Advisory
&lt;br /&gt;
&lt;p&gt;Vulnerability name: Nokia Browser Array Sort Denial Of Service Vulnerability
&lt;br /&gt;
Advisory number: LC-2008-04
&lt;br /&gt;
Advisory URL: http://www.ikkisoft.com
&lt;br /&gt;
&lt;p&gt;...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0086.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0086.html</guid>
<pubDate>10 Oct 2008 16:04:01 -0000</pubDate></item>
<item><title>Re: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection</title><description>Posted by ProCheckUp Research on Oct 10&lt;p&gt;


&lt;p&gt;
&lt;p&gt;Hi 3APA3A,
&lt;br /&gt;
&lt;p&gt;That&#39;s a good question, and here is my answer from the draft version of
&lt;br /&gt;
an upcoming paper I&#39;m working on:
&lt;br /&gt;
&lt;p&gt;&amp;quot;
&lt;br /&gt;
Gaining SNMP write access to a device is already a compromise on its own
&lt;br /&gt;
and usually considered a potential high risk security issue. Therefore,
&lt;br /&gt;
one could argue that...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0085.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0085.html</guid>
<pubDate>Fri, 10 Oct 2008 09:35:33 +0100</pubDate></item>
<item><title>Re[2]: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection</title><description>Posted by Vladimir 3APA3A Dubrovin on Oct 10&lt;p&gt;


&lt;p&gt;
Dear lee.e.rian_at_census&amp;#46;gov,
&lt;br /&gt;
&lt;p&gt;Why do you think you can&#39;t do it with SNMP? An examples are settings DNS
&lt;br /&gt;
server   option   via   DHCP  (or  DNS  domain  name  for  proxy  server
&lt;br /&gt;
autodiscovery  protocol)  or  even  configuring  a  VPN  tunnel  for all
&lt;br /&gt;
traffic.  I&#39;m  not  sure  about...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0084.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0084.html</guid>
<pubDate>Fri, 10 Oct 2008 10:28:43 +0400</pubDate></item>
<item><title>[USN-651-1] Ruby vulnerabilities</title><description>Posted by Jamie Strandboge on Oct 9&lt;p&gt;


&lt;p&gt;
===========================================================
&lt;br /&gt;
Ubuntu Security Notice USN-651-1           October 10, 2008
&lt;br /&gt;
ruby1.8 vulnerabilities
&lt;br /&gt;
CVE-2008-2376, CVE-2008-3443, CVE-2008-3655, CVE-2008-3656,
&lt;br /&gt;
CVE-2008-3657, CVE-2008-3790, CVE-2008-3905
&lt;br /&gt;...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0083.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0083.html</guid>
<pubDate>Thu, 9 Oct 2008 21:25:50 -0500</pubDate></item>
<item><title>ZDI-08-067: Apple CUPS 1.3.7 (HP-GL2 filter) Remote Code Execution Vulnerability</title><description>Posted by zdi-disclosures_at_3com.com on Oct 9&lt;p&gt;


&lt;p&gt;
ZDI-08-067: Apple CUPS 1.3.7 (HP-GL/2 filter) Remote Code Execution 
&lt;br /&gt;
Vulnerability
&lt;br /&gt;
http://www.zerodayinitiative.com/advisories/ZDI-08-067
&lt;br /&gt;
October 9, 2008
&lt;br /&gt;

&lt;br /&gt;
-- CVE ID:
&lt;br /&gt;
CVE-2008-3641
&lt;br /&gt;

&lt;br /&gt;
-- Affected Vendors:
&lt;br /&gt;
Apple
&lt;br /&gt;

&lt;br /&gt;
-- Affected Products:
&lt;br /&gt;
Apple OS X
&lt;br /&gt;

&lt;br /&gt;
-- TippingPoint(TM) IPS...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0082.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0082.html</guid>
<pubDate>Thu, 9 Oct 2008 22:21:04 -0400</pubDate></item>
<item><title>[SECURITY] CVE-2008-3271 - Apache Tomcat information disclosure</title><description>Posted by Mark Thomas on Oct 09&lt;p&gt;


&lt;p&gt;
&lt;p&gt;CVE-2008-3271: Tomcat information disclosure vulnerability
&lt;br /&gt;
&lt;p&gt;Severity: Low
&lt;br /&gt;
&lt;p&gt;Vendor:
&lt;br /&gt;
The Apache Software Foundation
&lt;br /&gt;
&lt;p&gt;Versions Affected:
&lt;br /&gt;
Tomcat 4.1.0 to 4.1.31
&lt;br /&gt;
Tomcat 5.5.0
&lt;br /&gt;
Tomcat 6.0.x is not affected
&lt;br /&gt;
The unsupported Tomcat 3.x, 4.0.x and 5.0.x versions may be also affected
&lt;br /&gt;
&lt;p&gt;Description:
&lt;br /&gt;
Bug...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0081.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0081.html</guid>
<pubDate>Thu, 09 Oct 2008 23:46:19 +0100</pubDate></item>
<item><title>Re: News Manager Remote SQL Injection Vulnerability</title><description>Posted by packet_at_packetstormsecurity.org on Oct 9&lt;p&gt;


&lt;p&gt;
Discovered over a year ago.
&lt;br /&gt;
&lt;p&gt;http://packetstormsecurity.org/0705-exploits/prenews-sql.txt 0bae5b1d6f9d99c6749403341807f0d8 Pre News Manager version 1.0 suffers from a remote SQL injection vulnerability. &amp;amp;nbsp;Homepage: http://www.cyber-security.org/. 
&lt;br /&gt;
&lt;p&gt;On Thu, Oct 09, 2008 at 12:21:25PM...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0080.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0080.html</guid>
<pubDate>Thu, 9 Oct 2008 18:20:30 -0400</pubDate></item>
<item><title>CA ARCserve Backup Multiple Vulnerabilities</title><description>Posted by Williams James K on Oct 9&lt;p&gt;


&lt;p&gt;

&lt;br /&gt;

&lt;br /&gt;
Title: CA ARCserve Backup Multiple Vulnerabilities
&lt;br /&gt;

&lt;br /&gt;

&lt;br /&gt;
CA Advisory Date: 2008-10-09
&lt;br /&gt;

&lt;br /&gt;

&lt;br /&gt;
Reported By:
&lt;br /&gt;
Haifei Li of Fortinet&#39;s FortiGuard Global Security Research Team
&lt;br /&gt;
Vulnerability Research Team of Assurent Secure Technologies, a 
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;TELUS Company
&lt;br /&gt;
Greg Linares...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0079.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0079.html</guid>
<pubDate>Thu, 9 Oct 2008 17:57:05 -0400</pubDate></item>
<item><title>Re: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection</title><description>Posted by lee.e.rian_at_census.gov on Oct 9&lt;p&gt;


&lt;p&gt;
-----&amp;quot;Vladimir &#39;3APA3A&#39; Dubrovin&amp;quot; &amp;lt;3APA3A_at_SECURITY&amp;#46;NNOV.RU&amp;gt; wrote: -----
&lt;br /&gt;
&lt;p&gt;&amp;gt;What  can  you  achieve  with script injection you can not achieve
&lt;br /&gt;
&amp;gt;with SNMP write access?
&lt;br /&gt;
&lt;p&gt;I don&#39;t know what you can actually achieve, but in addition to whatever you
&lt;br /&gt;
can do to/with the box...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0078.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0078.html</guid>
<pubDate>Thu, 9 Oct 2008 17:24:27 -0400</pubDate></item>
<item><title>Re: Motorola Timbuktus Internet Locator Service real-time data exposed to public.</title><description>Posted by therese.vanryne_at_motorola.com on Oct 9&lt;p&gt;


 (&#39;binary&#39; encoding is not supported, stored as-is)
Thank you for revisiting this issue. Unfortunately your first message didn&#39;t make it to the right parties due to the then-recent acquisition of Netopia by Motorola. 
&lt;br /&gt;
&lt;p&gt;We take security seriously and have added in password protection to fix this...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0077.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0077.html</guid>
<pubDate>Thu, 9 Oct 2008 10:04:02 -0600</pubDate></item>
<item><title>Re: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection</title><description>Posted by Vladimir 3APA3A Dubrovin on Oct 9&lt;p&gt;


&lt;p&gt;
Dear ProCheckUp Research,
&lt;br /&gt;
&lt;p&gt;&amp;nbsp;What  can  you  achieve  with script injection you can not achieve with
&lt;br /&gt;
&amp;nbsp;SNMP write access?
&lt;br /&gt;
&lt;p&gt;--Thursday, October 9, 2008, 5:02:44 PM, you wrote to bugtraq_at_securityfocus&amp;#46;com:
&lt;br /&gt;
&lt;p&gt;PR&amp;gt; $ snmpset -v1 -c public 192.168.1.100 sysName.0 s
&lt;br /&gt;...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0076.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0076.html</guid>
<pubDate>Thu, 9 Oct 2008 22:20:45 +0400</pubDate></item>
<item><title>[ GLSA 200810-02 ] Portage: Untrusted search path local root vulnerability</title><description>Posted by Robert Buchholz on Oct 9&lt;p&gt;


&lt;p&gt;
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
&lt;br /&gt;
Gentoo Linux Security Advisory                           GLSA 200810-02
&lt;br /&gt;
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
&lt;br /&gt;...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0075.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0075.html</guid>
<pubDate>Thu, 9 Oct 2008 19:36:48 +0200</pubDate></item>
<item><title>Re: Token Kidnapping Windows 2003 PoC exploit</title><description>Posted by groovydude_at_mywasteofbandwidth.com on Oct 9&lt;p&gt;


 (&#39;binary&#39; encoding is not supported, stored as-is)
Has a patch been previously released by Microsoft for this?
&lt;br /&gt;
Received on Oct 09 2008

</description>
<link>http://seclists.org/bugtraq/2008/Oct/0074.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0074.html</guid>
<pubDate>Thu, 9 Oct 2008 06:25:41 -0600</pubDate></item>
<item><title>[security bulletin] HPSBMA02374 SSRT080046 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Denial of Service (DoS)</title><description>Posted by security-alert_at_hp.com on Oct 09&lt;p&gt;


&lt;p&gt;
&lt;p&gt;SUPPORT COMMUNICATION - SECURITY BULLETIN
&lt;br /&gt;
&lt;p&gt;Document ID: c01567813
&lt;br /&gt;
Version: 1
&lt;br /&gt;
&lt;p&gt;HPSBMA02374 SSRT080046 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Denial of Service (DoS)
&lt;br /&gt;
&lt;p&gt;NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.
&lt;br /&gt;
&lt;p&gt;Release Date:...</description>
<link>http://seclists.org/bugtraq/2008/Oct/0073.html</link><guid isPermaLink="true">http://seclists.org/bugtraq/2008/Oct/0073.html</guid>
<pubDate>Thu, 09 Oct 2008 05:25:01 -0700</pubDate></item>
</channel></rss>