Network Security

AERAsec
Network Security
Current Security Messages


Most of the links lead to the corresponding files at CERT or other organisations. So changes take place immediately, especially which patches should be installed or which changes in the configuration should be made to avoid this vulnerability. Some of the files are transferred by FTP.

By the way: If we're not publishing well-known risks inheritant in any widely used platform or program that doesn't mean this particular platform or program is safe to use!

Here you find our network security search engine!


This is some information you send:

Your Browser

CCBot/2.0

Your IP address

ec2-50-16-17-90.compute-1.amazonaws.com [50.16.17.90]

Your referer

(filtered or not existing)

Current month, Last month, Last 10 messages, Last 20 messages (index only)

Chosen month 12 / 2006

System: Some
Topic: Vulnerability in W3M
Links: OpenPKG-SA-2006.044, OpenBSD, SUSE-SA:2007:005
ID: ae-200612-059

A format string bug exists in the textual web browser W3M. The bug results in a crash of W3M under run-time options "-dump" or "-backend" if requesting HTTPS URLs and printf(3) escape sequences like "%n%n" occur in the Common Name (CN) of the website X.509 certificate. An updated package addresses this issue.

System: Debian GNU/Linux
Topic: Vulnerabilities in elog, evince, and xine-lib
Links: DSA-1242, CVE-2006-5063, CVE-2006-5790, CVE-2006-5791, CVE-2006-6318, ESB-2006.0949,
DSA-1243, CVE-2006-5864, ESB-2006.0856, ESB-2006.0950,
DSA-1244, CVE-2006-6712, ESB-2006.0951
ID: ae-200612-058

Several remote vulnerabilities have been discovered in elog, a web-based electronic logbook, which may lead to the execution of arbitrary code.
Gv is the PostScript and PDF viewer for X. It performs insufficient boundary checks in the Postscript parsing code, which allows the execution of arbitrary code through a buffer overflow. Evince embeds a copy of gv and needs an update as well.
It was discovered that the Xine multimedia library performs insufficient sanitising of Real streams, which might lead to the execution of arbitrary code through a buffer overflow.
Updated packages solve these problems.

System: Turbolinux
Topic: Vulnerabilities in openLDAP, OpenSSH, and Flashplayer
Links: TLSA-2006-44, CVE-2006-5779,
TLSA-2006-45, CVE-2006-5794,
TLSA-2006-46, APSB06-18
ID: ae-200612-057

Turbolinux has published patches for known vulnerabilities in openLDAP, openSSH, and Flashplayer. It's recommended to install these updates.

System: SGI Advanced Linux Environment
Topic: Vulnerabilities in Seamonkey and tar
Links: SGI_20061202-01
ID: ae-200612-056

SGI has released the Security Update #68 for SGI Advanced Linux Environment 3. These updates fix already known security related problems in seamonkey and tar.
So it's recommended to install this update.

System: Debian GNU/Linux
Topic: Vulnerability in squirrelmail
Links: DSA-1241, CVE-2005-6142, ESB-2006.0946
ID: ae-200612-055

Cross-site scripting vulnerabilities in the mailto parameter of webmail.php, the session and delete_draft parameters of compose.php and through a shortcoming in the magicHTML filter have been found. An attacker could abuse these to execute malicious JavaScript in the user's webmail session. An updated package addresses this issue.

System: Some
Topic: Vulnerability in OpenSER
Links: OpenPKG-SA-2006.042, ESB-2006.0947
ID: ae-200612-054

A buffer overflow was discovered in the "parse_expression" function of the "permissions" module of the SIP router OpenSER, versions up to and including 1.1.0. The buffer overflow is triggered by parsing a configuration line expression consisting of more than 500 characters and potentially could lead to the execution of arbitrary code under the privileges of the OpenSER process. So it's recommended to update to the latest version.

System: Various, Sun Solaris
Topic: Vulnerability in RSA Signature Verification
Links: Sun Alert #102648, Sun Alert #102759 CVE-2006-4339, VU#845620, ESB-2006.0728, ESB-2006.0944
ID: ae-200612-053

Certain Sun products (including some bundled third party products) may be vulnerable to an RSA Signature Verification vulnerability that allows unauthorized forged certificates to be validated. This may result in a number of different types of remote exploits. Affected Software is JDK, NSS, OpenSSL bundled with Solaris, Mozilla, IPsec/IKE, Secure Global Desktop, GnuTLS bundled with Solaris, StarOffice, SJS Server Products, and Solaris WAN Boot. Updated packages are available now.

System: Various
Topic: Vulnerability in Novell NetMail IMAP/IMAPD
Links: iDEFENSE #454, iDEFENSE #455, ZDI-06-052, ZDI-06-053, ZDI-06-054, CVE-2006-6424, CVE-2006-6425, Novell #3717068, ESB-2006.0945
ID: ae-200612-052

Novell NetMail is an e-mail and calendar system that is based on standard Internet protocols. Remote exploitation of a buffer overflow vulnerability in Novell Inc.'s NetMail IMAP daemon version 3.52 allows authenticated attackers to execute arbitrary code with the privileges of the underlying user. Once logged in, attackers can execute the "subscribe" command with an overly long argument string to overflow a stack based buffer. Novell has addressed this vulnerability in version 3.52e FTF2 of NetMail.

System: SuSE Linux
Topic: Problems with Kernel
Links: SUSE-SA:2006:079, CVE-2006-3741, CVE-2006-4145, CVE-2006-4538, CVE-2006-4572, CVE-2006-4623, CVE-2006-4813, CVE-2006-4997, CVE-2006-5173, CVE-2006-5174, CVE-2006-5619, CVE-2006-5648, CVE-2006-5649, CVE-2006-5751, CVE-2006-5757, CVE-2006-5823, CVE-2006-6053, CVE-2006-6054, CVE-2006-6056, CVE-2006-6060
ID: ae-200612-051

Several vulnerabilities have been found and fixed now in the kernel. They might have led to a Denial-of-Service (local or remote) and a local privilege escalation. It's recommended to install the update which is available now.

System: Unix/Linux
Topic: Vulnerability in D-Bus
Links: Freedesktop, OpenPKG-SA-2006.041, MDKSA-2006:233
ID: ae-200612-050

A vendor-confirmed Denial-of-Service (DoS) vulnerability in the D-Bus message bus system, versions before 1.0.2, has been found. The flaw is in the "match_rule_equal" function in "bus/signals.c" and allows local applications to remove match rules for other applications and cause a DoS via lost process messages. So it's recommeded to install the latest version.

System: Various
Topic: Vulnerability in Mono
Links: Mono, MDKSA-2006:234, ESB-2006.0943, SUSE_2007_02
ID: ae-200612-049

XSP (the Mono ASP.NET server) is vulnerable to source disclosure attack which allow a malicious user to obtain the source code of the server-side application. This vulnerability grants the attacker deeper knowledge of the Web application logic. Updated packages have been patched to correct this issue.

System: Various
Topic: Vulnerability in CA CleverPath Portal
Links: CA, ESB-2006.0942
ID: ae-200612-048

CA CleverPath Portal and other CA solutions that embed Portal technology contain a session verification vulnerability. In certain multiple Portal server configurations, a user who connects through one Portal server could conceivably inherit the Portal session and associated security authentication of a user running on another Portal server. An updated version solves this problem.

System: Linux
Topic: Vulnerability in links2
Links: TheAimsGroup, CVE-2005-5925, DSA-1240, ESB-2006.0940, OpenPKG-SA-2006.043
ID: ae-200612-047

It has been discovered that the links2 character mode web browser performs insufficient sanitising of smb:// URIs, which might lead to the execution of arbitrary shell commands. An updated package solves this problem.

System: Some
Topic: Vulnerability in Ruby
Links: Ruby, CVE-2006-6303, ESB-2006.0940, OpenPKG-SA-2006.040, TLSA-2007-1
ID: ae-200612-046

Ruby is a dynamic, open source programming language with a focus on simplicity and productivity. The read_multipart function of the CGI library shipped with Ruby (cgi.rb) does not properly check boundaries in MIME multipart content. This might lead to a Denial-of-Service. It's recommended to upgrade to the latest version of Ruby.

System: Microsoft Windows
Topic: Vulnerability in ESET NOD32 Antivirus
Links: ESET, ESB-2006.0939
ID: ae-200612-045

Multiple vulnerabilities have been found in the file parsing engine of ESET NOD32 Antivirus, so aritrary code can be remotely executed. An update is available and should be installed soon.

System: Various
Topic: Vulnerability in IBM DB2
Links: AppSec, IBM_swg24013114, ESB-2006.0938
ID: ae-200612-044

When connecting to a remote DB2 instance, the version 7 client typically sends a SQLJRA packet requesting start of the connection. If this SQLJRA packet is specially crafted, it can cause a Denial-of-Service attack by crashing the DB2 instance. This can do any remote unauthenticated attacker. Fixpack 13 for DB2 version 8.1 has been published to solve this problem.

System: Microsoft Windows
Topic: Vulnerability in HP Storage Management Appliance (SMA)
Links: HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-043

The latest patches for Microsoft are needed to be installed when using the SMA. It's strongly recommended to install these hotfixes from Microsoft.

System: HP-UX
Topic: Vulnerability in OpenSSL
Links: HPSBUX02174, SSRT061239, CVE-2006-4343, CVE-2006-3738, CVE-2006-2940, CVE-2006-2937, CVE-2006-2969, ESB-2006.0936
ID: ae-200612-042

Running OpenSSL under HP-UX 11.23 or HP-UX 11.11 might lead to a Denial-of-Service or a local increase of privileges. HP has made an updated package available.

System: Microsoft Windows
Topic: Vulnerability in Novell NetWare Client
Links: VU#300636, CVE-2006-5854, CVE-2006-6114, R-092
ID: ae-200612-041

A vulnerability exists in the Novell NetWare client for Windows that could allow a remote attacker to execute arbitrary code on an affected system. Novell has issued a beta upgrade that addresses this issue.

System: Various
Topic: Vulnerabilities in Sun Java Runtime Environment
Links: Sun Alert #102729, Sun Alert #102731, Sun Alert #102732, ESB-2006.0933, ESB-2006.0934, ESB-2006.0935, R-093
ID: ae-200612-040

Two buffer overflow vulnerabilities in the Java Runtime Environment may independently allow an untrusted applet to elevate its privileges. For example, an applet may grant itself permissions to read and write local files or execute local applications that are accessible to the user running the untrusted applet. Additionally, it might be able to access data in other applets.
A new release fixes this issue.

System: Red Hat Linux
Topic: Vulnerability in tar
Links: RHSA-2006-0749, CVE-2006-6097, R-091, ESB-2006.0929
ID: ae-200612-039

A malicious user might create a tar archive that could write to arbitrary files to which the user running GNU tar has write access. An update is available now.

System: Mac OS X
Topic: Apple Security Update 2006-008
Links: APPLE-SA-2006-12-19, ESB-2006.0928, CVE-2006-6027
ID: ae-200612-038

Several security issues in QuickTime for Java are fixed and bundled in the Security Update 2006-008, which is available now.

System: SuSE Linux
Topic: Vulnerabilities in koffice, squirrelmail, evince, novell-lum, and gdm
Links: SUSE-SR:2006:029
ID: ae-200612-037

The weekly SUSE Security Summary reports vulnerabilities in the packages koffice, squirrelmail, evince, novell-lum, and gdm. Updated packages are available now and should be installed on vulnerable systems.

System: Various
Topic: Vulnerabilities in Mozilla Firefox, Mozilla Thunderbird, and Mozilla Seamonkey
Links: Mozilla, CVE-2006-6497, CVE-2006-6498, CVE-2006-6501, CVE-2006-6502, CVE-2006-6503, CVE-2006-6504, CVE-2006-6505, VU#606260, VU#928956, VU#887332, R-084, R-085, R-086, R-087, R-088, R-089, R-090, R-094, RHSA-2006-0758, RHSA-2006-0759, RHSA-2006-0760, ESB-2006.0930, ESB-2006.0931, ESB-2006.0932, TLSA-2006-43, TLSA-2006-47, TLSA-2006-48, OpenBSD, SUSE_2006_80, SUSE_2007_06, DSA-1258, ESB-2007.0084
ID: ae-200612-036

The Mozilla web browser and derived products contain several vulnerabilities, the most serious of which could allow a remote attacker to execute arbitrary code on an affected system. Fixed software is available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in kernel, clamav, and sql-ledger
Links: DSA-1237, CVE-2005-4093, CVE-2006-4538, CVE-2006-4997, CVE-2006-5174, CVE-2006-5649, CVE-2006-5871, ESB-2006.0919,
DSA-1238, CVE-2006-6406, CVE-2006-6481, ESB-2006.0920, R-082,
DSA-1239, CVE-2006-4244, CVE-2006-4731, CVE-2006-5872, ESB-2006.0921
ID: ae-200612-035

Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code.
Two remote vulnerabilities have been discovered in 'clamav', the Clam anti-virus toolkit.
Several remote vulnerabilities have been discovered in SQL Ledger, a web based double-entry accounting program, which may lead to the execution of arbitrary code.
Fixed packages are available now.

System: Various
Topic: Vulnerabilities in Symantec Veritas NetBackup
Links: Symantec, CVE-2006-4902, CVE-2006-5822, CVE-2006-6222, ESB-2006.0912, R-080
ID: ae-200612-034

Multiple vulnerabilities have been identified in Symantec's Veritas NetBackup Master, Media Servers and clients. An attacker, able to access a vulnerable NetBackup host and successfully exploit these issues, could potentially cause execution of arbitrary code resulting in possible unauthorized, elevated access to the targeted system. Fixed software is available now.

System: NetBSD
Topic: Vulnerability in libc
Links: NetBSD-SA2006-027, ESB-2006.0916
ID: ae-200612-033

A flaw in glob(3) could potentially allow for the execution of untrusted code. Currently the NetBSD ftp daemon that ships with the base distribution uses glob(3) which has been found to be potentially vulnerable to attack. A patch is available now.

System: Various
Topic: Vulnerability in gdmchooser
Links: iDefense, CVE-2006-6105, ESB-2006.0917, R-081, MDKSA-2006:231
ID: ae-200612-032

Local exploitation of a format string vulnerability in GNOME Foundation's GNOME Display Manager host chooser window (gdmchooser) could allow an unauthenticated attacker to execute arbitrary code on the affected system. Fixed packages are available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in ruby and enemies-of-carlotta
Links: DSA-1234, DSA-1235, CVE-2006-5467, ESB-2006.0911,
DSA-1236, CVE-2006-5875, ESB-2006.0918
ID: ae-200612-031

A denial of service vulnerability has been discovered in the CGI library included with Ruby, the interpreted scripting language for quick and easy object-oriented programming.
It was discovered that enemies-of-carlotta, a simple manager for mailing lists, does not properly sanitise email addresses before passing them through to the system shell.
Fixed packages are available now.

System: Microsoft Windows
Topic: Vulnerabilities in Microsoft Windows Media Format
Links: MS06-078, CVE-2006-4702, CVE-2006-6134, ESB-2006.0906, R-076, ISS Alert, HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-030

No further comment due to legal reasons

System: Microsoft Windows 2000
Topic: Vulnerability in Remote Installation Service
Links: MS06-077, CVE-2006-5584, AL-2006.0123, R-079, HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-029

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Microsoft Outlook
Links: MS06-076, CVE-2006-2386, ESB-2006.0909, R-078, HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-028

No further comment due to legal reasons

System: Microsoft Windows XP, 2003
Topic: Vulnerability in Microsoft Windows
Links: MS06-075, CVE-2006-5585, ESB-2006.0908, R-077, HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-027

No further comment due to legal reasons

System: Microsoft Windows 2000, XP, 2003
Topic: Vulnerability in Microsoft Windows SNMP Service
Links: MS06-074, CVE-2006-5583, ESB-2006.9076, R-073, ISS Alert, HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-026

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Microsoft Visual Studio
Links: MS06-073, CVE-2006-4704, ESB-2006.0905, R-075, HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-025

No further comment due to legal reasons

System: Microsoft Windows 2000, XP, 2003
Topic: Vulnerabilities in Microsoft Internet Explorer
Links: MS06-072, CVE-2006-5577, CVE-2006-5578, CVE-2006-5579, CVE-2006-5581, VU#347448, AL-2006.0122, R-074, ISS Alert, HPSBST02180, SSRT061288, ESB-2006.0937
ID: ae-200612-024

No further comment due to legal reasons

System: SUSE LINUX
Topic: Vulnerabilities in xine-lib, texinfo, wv, and libpng
Links: SUSE-SR:2006:028
ID: ae-200612-023

The weekly SUSE Security Summary reports vulnerabilities in the packages xine-lib, texinfo, wv, and libpng. Updated packages are available now and should be installed on vulnerable systems.

System: Various
Topic: Vulnerability in Linux Atheros WLAN Driver
Links: CVE-2006-6332, VU#925529, ESB-2006.0903, SUSE-SA:2006:074
ID: ae-200612-022

The madwifi-ng Atheros Wireless LAN card driver is subject to a remotely exploitable stack buffer overflow, which either code execution possibility or at least a denial of service (kernel crash). Fixed packages are available now.

System: Microsoft Windows
Topic: Vulnerability in Microsoft Windows Media Player
Links: VU#208769, CVE-2006-5994, R-068, ISS Alert
ID: ae-200612-021

Windows Media Player does not properly handle malformed Windows Media Metafiles. This vulnerability may allow a remote attacker execute arbitrary code or crash Windows Media Player. A patch is not available yet.

System: Various
Topic: Vulnerability in GnuPG
Links: CVE-2006-6235, VU#427009, MDKSA-2006:228
ID: ae-200612-020

A "stack overwrite" vulnerability in GnuPG (gpg) allows attackers to execute arbitrary code via crafted OpenPGP packets that cause GnuPG to dereference a function pointer from deallocated stack memory. Fixed packages are available now.

System: Linux
Topic: Vulnerabilities in Sophos Antivirus for Linux
Links: iDefense, iDefense, CVE-2006-5646, CVE-2006-5647, ESB-2006.0902
ID: ae-200612-019

Sophos AntiVirus Engine is vulnerable to Memory Corruption and Heap Overflow vulnerabilities when scanning malformed CHM archives. Fixed packages are available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in l2tpns, gnupg, and clamav
Links: DSA-1230, CVE-2006-5873, R-067, ESB-2006.0904,
DSA-1231, CVE-2006-6169, CVE-2006-6235, ESB-2006.0898,
DSA-1232, CVE-2006-5874, ESB-2006.0899
ID: ae-200612-018

A vulnerability was discovered in l2tpns, a layer 2 tunnelling protocol network server, which could be triggered by a remote user to execute arbitrary code.
There are two security issues with GnuPG that could cause GnuPG to execute arbitrary code: A stack overwrite flaw in the way GnuPG decrypts messages. A heap based buffer overflow flaw was found in the way GnuPG constructs messages to be written to the terminal during an interactive session.
It was discovered that malformed base64-encoded MIME attachments can lead to denial of service through a null pointer dereference.
Fixed packages are available now.

System: Microsoft Windows
Topic: Vulnerability in Ipswitch IMail Server and Ipswitch Collaboration Suite
Links: Ipswitch, CVE-2006-4379, VU#542197
ID: ae-200612-017

A vulnerability has been reported in IMail Server, which can be exploited by malicious people to compromise a vulnerable system. A patch is available now.

System: Various
Topic: Vulnerability in Intel Network Adapter Driver
Links: eEye, VU#296681, ESB-2006.0896
ID: ae-200612-016

A vulnerability was discovered in all Intel network adapter drivers that could allow unprivileged code executing on an affected system to gain unfettered, kernel-level access. Patches are available now.

System: Microsoft Windows
Topic: Vulnerability in Microsoft Word
Links: Microsoft, VU#167928, CVE-2006-5994, R-063, AL-2006.0117
ID: ae-200612-015

Microsoft Word contains a vulnerability that could be exploited when Word opens a specially crafted document. A patch is not available yet.

System: FreeBSD
Topic: Vulnerability in firewire
Links: FreeBSD-SA-06:25, ESB-2006.0894
ID: ae-200612-014

In the FW_GCROM ioctl, a signed integer comparison is used instead of an unsigned integer comparison when computing the length of a buffer to be copied from the kernel into the calling application. A user in the "operator" group can read the contents of kernel memory. A patch is available now.

System: Red Hat Enterprise Linux
Topic: Vulnerabilities in gnupg and mod_auth_kerb
Links: RHSA-2006-0754, CVE-2006-6169, CVE-2006-6235, ESB-2006.0892, R-064,
RHSA-2006-0746, CVE-2006-5989, ESB-2006.0893
ID: ae-200612-013

There are two security issues with GnuPG that could cause GnuPG to execute arbitrary code: A stack overwrite flaw in the way GnuPG decrypts messages. A heap based buffer overflow flaw was found in the way GnuPG constructs messages to be written to the terminal during an interactive session.
An off by one flaw was found in the way mod_auth_kerb handles certain Kerberos authentication messages. A remote client could send a specially crafted authentication request which could crash an httpd child process.
Fixed packages are available now.

System: Debian GNU/Linux
Topic: Vulnerability in asterisk
Links: DSA-1229 CVE-2006-5444, ESB-2006.0891
ID: ae-200612-012

An integer overflow was discovered in the Skinny channel driver in Asterisk, an Open Source Private Branch Exchange or telephone system, as used by Cisco SCCP phones, which allows remote attackers to execute arbitrary code. Fixed packages are available now.

System: Various
Topic: Vulnerabilities in IBM Tivoli Storage Manager
Links: IBM, CVE-2006-5855, ESB-2006.0890
ID: ae-200612-011

Several buffer overflows were found in the Tivoli Storage Manager (TSM). Invalid requests sent to a TSM server by an application directly opening the server TCP socket, not by the TSM client, during the client login process can cause the TSM server to crash. It is possible to execute arbitrary code. Patches are available now.

System: HP-UX
Topic: Vulnerability in HP-UX Secure Shell
Links: HPSBUX02178, SSRT061267, CVE-2006-0225, CVE-2006-4924, ESB-2006.0889
ID: ae-200612-010

A security vulnerability has been identified with HP-UX running HP-UX Secure Shell. The vulnerability could be remotely exploited to allow a remote unauthorized user to create a Denial of Service (DoS). Patches are available now.

System: Microsoft Windows
Topic: Vulnerability in Adobe Reader and Acrobat
Links: APSB06-20, CVE-2006-6027
ID: ae-200612-009

Vulnerabilities in Adobe Reader and Acrobat 7 would cause the application to crash and could potentially allow an attacker to take control of the affected system. A workaround is available now. The vulnerability is fixed in Adobe Reader 8.

System: Microsoft Windows / Apple Mac OS
Topic: Vulnerability in Adobe Download Manager
Links: APSB06-19, CVE-2006-5856, VU#448569, R-066, AL-2006.0118
ID: ae-200612-008

A critical vulnerability has been identified in Adobe Download Manager that could allow an attacker who successfully exploits this vulnerability to take control of the affected system. It is recommended that users uninstall Adobe Download Manager.

System: Debian GNU/Linux
Topic: Vulnerability in elinks
Links: DSA-1228, CVE-2006-5925, ESB-2006.0888
ID: ae-200612-007

It was discovered that the elinks character mode web browser performs insufficient sanitising of smb:// URIs, which might lead to the execution of arbitrary shell commands. Fixed packages are available now.

System: Sun Solaris 10
Topic: Vulnerability in the Solaris 10 Kernel
Links: Sun Alert #102574, ESB-2006.0886
ID: ae-200612-006

A security vulnerability related to a race condition in the Solaris kernel may allow a local unprivileged user to panic the system, creating a Denial of Service (DoS) condition. A patch is available now.

System: Various
Topic: Vulnerabilities in Novell ZENworks Asset Management
Links: iDefense, iDefense, ESB-2006.0884
ID: ae-200612-005

Remote exploitation of two integer overflow vulnerabilities in Novell Inc.'s ZENworks Asset Management could potentially allow an attacker to execute arbitrary code with the privileges of the system. Fixed packages are available now.

System: Various
Topic: Vulnerability in Sun Java System Servers
Links: Sun Alert ID 102733, R-061, ESB-2006.0887
ID: ae-200612-004

If the Sun Java System Proxy Server is used in conjunction with the Sun Java System Application Server or the Sun Java System Web Server then it may be susceptible to "HTTP Request Smuggling" (HRS) which can allow remote unprivileged users to be able to poison web caches, hijack sessions, perform cross-site scripting (CSS or XSS) attacks or bypass web application firewall protection. Patches are available now.

System: SUSE Linux
Topic: Vulnerability in mono-core
Links: SUSE-SA:2006:073, CVE-2006-5072
ID: ae-200612-003

The System.CodeDom.Compiler classes in Novell Mono create temporary files with insecure permissions, which allows local users to overwrite arbitrary files or execute arbitrary code via a symlink attack. Fixed packages are available now.

System: Mandriva Linux
Topic: Vulnerabilities in imagemagick
Links: MDKSA-2006:223, CVE-2006-5868
ID: ae-200612-002

Several remote vulnerabilities have been discovered in Imagemagick, a collection of image manipulation programs, which may lead to the execution of arbitrary code. Fixed packages are available now.

System: Various
Topic: Vulnerabilities in proftpd
Links: CVE-2006-5815, CVE-2006-6170, CVE-2006-6171, DSA-1222, ESB-2006.0879, MDKSA-2006:217-1, OpenPKG-SA-2006.039, ESB-2006.0948
ID: ae-200612-001

Several remote vulnerabilities have been discovered in the proftpd FTP daemon, which may lead to the execution of arbitrary code or denial of service. Fixed packages are available now.



(c) 2000-2013 AERAsec Network Services and Security GmbH