Feed aggregator

Vuln: Mozilla Firefox/Thunderbird/Seamonkey CVE-2013-0796 Memory Corruption Vulnerability

Mozilla Firefox/Thunderbird/Seamonkey CVE-2013-0796 Memory Corruption Vulnerability
Categories:

Vuln: VideoJS JS Callback Cross Site Scripting Vulnerability

VideoJS JS Callback Cross Site Scripting Vulnerability
Categories:

Vuln: VideoJS Cross Site Scripting and Denial of Service Vulnerabilities

VideoJS Cross Site Scripting and Denial of Service Vulnerabilities
Categories:

Vuln: BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability

BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability
Categories:

Vuln: NCompress Decompress Buffer Underflow Vulnerability

NCompress Decompress Buffer Underflow Vulnerability
Categories:

Vuln: Resource Hacker Heap Based Buffer Overflow Vulnerability

Resource Hacker Heap Based Buffer Overflow Vulnerability
Categories:

Vuln: activeCollab Chat Module Arbitrary PHP Code Execution Vulnerability

activeCollab Chat Module Arbitrary PHP Code Execution Vulnerability
Categories:

Vuln: Vanilla Forums LatestComment Plugin Discussion Title HTML Injection Vulnerability

Vanilla Forums LatestComment Plugin Discussion Title HTML Injection Vulnerability
Categories:

Vuln: Vanilla Forums AboutMe Plugin HTML Injection Vulnerabilities

Vanilla Forums AboutMe Plugin HTML Injection Vulnerabilities
Categories:

Vuln: Oracle Java SE CVE-2013-2424 Remote Java Runtime Environment Vulnerability

Oracle Java SE CVE-2013-2424 Remote Java Runtime Environment Vulnerability
Categories:

Vuln: Oracle Java SE CVE-2013-2419 Remote Code Execution Vulnerability

Oracle Java SE CVE-2013-2419 Remote Code Execution Vulnerability
Categories:

Vuln: Linux Kernel CVE-2013-2094 Local Privilege Escalation Vulnerability

Linux Kernel CVE-2013-2094 Local Privilege Escalation Vulnerability
Categories:

CFP: IEEE SafeConfig: 6th Symposium on Security Analytics and Automation

BugTraq Latest Security Advisories - May 23, 2013 - 2:19pm

Posted by James Joshi on May 23

CALL FOR PAPERS

IEEE SafeConfig 2013
--------------------
6th Symposium on Security Analytics and Automation (www.safeconfig.org)

(collocated with IEEE Conference on Communications and Network Security)

Washington, D.C., USA
October 14, 2013

Sponsors: IEEE (COMSOC).

Important Dates

Abstract Registration Deadline: June 25
Manuscript Submission: July 1, 2013
Review Notification: August 7, 2013
Camera Ready: August 15, 2012
Conference Dates:...
Categories:

Bugtraq: [SECURITY] [DSA 2672-1] kfreebsd-9 security update

[SECURITY] [DSA 2672-1] kfreebsd-9 security update
Categories:

SEC Consult SA-20130523-0 :: JavaScript Execution in IBM WebSphere DataPower Services

BugTraq Latest Security Advisories - May 23, 2013 - 12:13pm

Posted by SEC Consult Vulnerability Lab on May 23

SEC Consult Vulnerability Lab Security Advisory < 20130523-0 >
=======================================================================
title: JavaScript Execution in WebSphere DataPower Services
product: IBM WebSphere DataPower Integration Appliance XI50
vulnerable version: 3.8.2, 4.0, 4.0.1, 4.0.2, 5.0.0
fixed version: not available, config changes
CVE number: CVE-2013-0499
impact:...
Categories:

[ANN] Struts 2.3.14.1 GA (fast track | security)

BugTraq Latest Security Advisories - May 23, 2013 - 11:57am

Posted by Lukasz Lenart on May 23

The Apache Struts group is pleased to announce that Struts 2.3.14.1 is
available as a "General Availability" release. The GA designation is
our highest quality grade.

Apache Struts 2 is an elegant, extensible framework for creating
enterprise-ready Java web applications. The framework is designed to
streamline the full development cycle, from building, to deploying, to
maintaining applications over time.

Two security issues were...
Categories:

Bugtraq: [waraxe-2013-SA#105] - Multiple Vulnerabilities in Spider Catalog Wordpress Plugin

[waraxe-2013-SA#105] - Multiple Vulnerabilities in Spider Catalog Wordpress Plugin
Categories:

Bugtraq: [waraxe-2013-SA#104] - Multiple Vulnerabilities in Spider Event Calendar Wordpress Plugin

[waraxe-2013-SA#104] - Multiple Vulnerabilities in Spider Event Calendar Wordpress Plugin
Categories:

APPLE-SA-2013-05-22-1 QuickTime 7.7.4

BugTraq Latest Security Advisories - May 23, 2013 - 10:38am

Posted by Apple Product Security on May 23

APPLE-SA-2013-05-22-1 QuickTime 7.7.4

QuickTime 7.7.4 is now available and addresses the following:

QuickTime
Available for: Windows 7, Vista, XP SP2 or later
Impact: Opening a maliciously crafted TeXML file may lead to an
unexpected application termination or arbitrary code execution
Description: A memory corruption issue existed in the handling of
TeXML files. This issue was addressed through improved bounds
checking.
CVE-ID
CVE-2013-1015...
Categories:

Bugtraq: Trend Micro DirectPass 1.5.0.1060 - Multiple Vulnerabilities

Trend Micro DirectPass 1.5.0.1060 - Multiple Vulnerabilities
Categories: