Edgeos - New VulnerabilitiesEdgeos - Private-Labeled Vulnerability Assessment ServicesSuSE Security Update: PDNS security update (pdns-5242)- (Found June 29, 2008 ) Critical Risk -- pdns used predictable random numbers for DNS responses.Therfore attackers could generate spoofed DNS responses(CVE-2008-1637).http://www.edgeos.com/threats/33089 SuSE Security Update: pdns-recursor: improve PRNG (pdns-recursor-5319)- (Found June 29, 2008 ) Critical Risk -- Pdns-recursor was prone to a spoofing vulnerability whichcould be abused to redirect clients or manipulate data.(CVE-2008-1637)http://www.edgeos.com/threats/33090 Akamai Download Manager ActiveX Control < 2.2.3.6 File Download Vulnerability- (Found June 29, 2008 ) Critical Risk -- The Windows remote host contains the Download Manager ActiveX controlfrom Akamai, which helps users download content. The version of this ActiveX control on the remote host reportedly isaffected by a parameter injection vulnerability that could beexploited to download arbitrary files and place them in arbitrarylocations on the affected host, such as the 'Startup' folder used byWindows. If an attacker can trick a user on the affected host intovisiting a specially-crafted web...http://www.edgeos.com/threats/33102 pLog albumId SQL Injection Vulnerability- (Found June 29, 2008 ) Critical Risk -- The remote host is running pLog or Lifetype, open-source bloggingplatforms written in PHP. The remote version of this software fails to sanitize user-suppliedinput to the 'albumId' parameter of the 'index.php' script beforeusing it in a database query in the 'getAlbum()' method in'classgallerydaogalleryalbums.class.php'. An unauthenticatedattacker can exploit this issue to manipulate database queriesresulting in disclosure of sensitive information (such as passwordhashes) or...http://www.edgeos.com/threats/33103 SecurityGateway < 1.0.2 Buffer Overflow Vulnerability- (Found June 29, 2008 ) Urgent Risk -- The remote host is running Alt-N's SecurityGateway for ExchangeSMTP,an email spam firewall for Exchange and SMTP servers. The version of SecurityGateway installed on the remote host is earlierthan 1.0.2. Such versions are reportedly affected by a bufferoverflow that can be triggered using a long 'username' parameter tothe 'SecurityGateway.dll' script to execute arbitrary code on theremote host with SYSTEM-level privileges, potentially resulting in acomplete compromise of the...http://www.edgeos.com/threats/33104 VMware Products Multiple Vulnerabilities (VMSA-2008-0009)- (Found June 29, 2008 ) Critical Risk -- A VMware product installed on the remote host is affected by multiplevulnerabilities. - A local privilege escalation issue in 'HGFS.sys' driver included with the VMware Tools package, could allow an unprivileged guest user to execute arbitrary code on the guest system. It should be noted that installing the new releases of the affected product will not resolve the issue. In order to successfully apply this patch VMware Tools package should be updated on each...http://www.edgeos.com/threats/33105 VMware VIX API Multiple Buffer Overflow Vulnerabilities- (Found June 29, 2008 ) Critical Risk -- VMware VIX, an application programming interface to manipulate virtualmachines is installed on the remote host.The installed version of VMware VIX API is affected by multiple bufferoverflow vulnerabilities. Successful exploitation of this issue couldallow arbitrary code execution on host operating system from the guest system.http://www.edgeos.com/threats/33106 Vulnerabilities in Microsoft Works File Converter Could Allow Remote Code Execution (947081)- (Found June 29, 2008 ) Critical Risk -- The remote host is running a version of Microsoft Office Works Converterwhich is subject to a flaw which may allow arbitrary code to be run.An attacker may use this to execute arbitrary code on this host.To succeed, the attacker would have to send a rogue file to a user of the remote computer and have it open it. Then a bug inthe wps header handler would result in code execution.http:www.microsoft.comtechnetsecuritybulletinms08-011.mspxhttp://www.edgeos.com/threats/33107 CA Secure Content Manager HTTP Gateway Service FTP Vulnerabilities- (Found June 29, 2008 ) Urgent Risk -- The remote host is running Computer Associates' Secure ContentManager, a gateway product for filtering messaging and web traffic. The HTTP Gateway component ('icihttp.exe') of the version of SecureContent Manager installed on the remote host does not sufficientlycheck responses to FTP 'LIST' and 'PASV' commands before copying theminto a stack buffer. An unauthenticated remote attacker can leveragethese issues to crash the affected service or to execute arbitrarycode on the...http://www.edgeos.com/threats/33108 CentOS : RHSA-2008-0498- (Found June 29, 2008 ) Critical Risk -- The remote CentOS system is missing a security update which has been documented in Red Hat advisory RHSA-2008-0498. yum updatehttp://www.edgeos.com/threats/33109 |