Edgeos - New VulnerabilitiesEdgeos - Private-Labeled Vulnerability Assessment ServicesOracle Application Server Portal 10g Authentication Bypass- (Found June 29, 2008 ) High Risk -- The remote host is running Oracle Application Server. By sending a specially-crafted GET request to the version of OracleApplication Server installed on the remote host, an unauthenticatedattacker can access potentially sensitive files listed under thedirectory 'dav_portalportal'.http://www.edgeos.com/threats/32479 Samba < 3.0.30 receive_smb_raw Buffer Overflow Vulnerability- (Found June 29, 2008 ) Critical Risk -- According to its banner, the version of the Samba server on the remotehost is reportedly affected by a boundary error in 'nmbd' within the'receive_smb_raw' function in 'libutil_sock.c' when parsing SMBpackets received in a client context. By sending specially-craftedpackets to an 'nmbd' server configured as a local or domain masterbrowser, an attacker can leverage this issue to produce a heap-basedbuffer overflow and execute arbitrary code with system privileges. Note that...http://www.edgeos.com/threats/32476 Backup Exec System Recovery Manager filename Parameter Directory Traversal Vulnerability- (Found June 29, 2008 ) High Risk -- The remote host appears to be running Symantec Backup Exec SystemRecovery Manager, a backup manager solution. The Tomcat servlet 'reportsfile' included in the version of BackupExec System Recovery Manager installed on the remote host fails toproperly sanitize user input to the 'filename' parameter of directorytraversal sequences. An unauthenticated remote attacker can leveragethis issue to view arbitrary files on the remote host.http://www.edgeos.com/threats/32475 SuSE Security Update: Security update for libvorbis (libvorbis-5259)- (Found June 29, 2008 ) Critical Risk -- Several security problems were fixed in libvorbis: CVE-2008-1419 - Division by zero CVE-2008-1420 - integer overflow CVE-2008-1423 - integer overflowhttp://www.edgeos.com/threats/32474 SuSE Security Update: libvorbis security update (libvorbis-5258)- (Found June 29, 2008 ) Critical Risk -- Several security problems were fixed in libvorbis: CVE-2008-1419 - Division by zero CVE-2008-1420 - integer overflow CVE-2008-1423 - integer overflowhttp://www.edgeos.com/threats/32473 RHSA-2008-0290: samba- (Found June 29, 2008 ) Critical Risk -- Updated samba packages that fix a security issue and two bugs are now available for Red Hat Enterprise Linux 5. This update has been rated as having critical security impact by the Red Hat Security Response Team. Samba is a suite of programs used by machines to share files, printers, and other information. A heap-based buffer overflow flaw was found in the way Samba clients handle over-sized packets. If a client connected to a malicious Samba server, it was possible to..http://www.edgeos.com/threats/32472 RHSA-2008-0288: samba- (Found June 29, 2008 ) Critical Risk -- Updated samba packages that fix a security issue and a bug are now available for Red Hat Enterprise Linux 2.1, Red Hat Enterprise Linux 3, and Red Hat Enterprise Linux 4. This update has been rated as having critical security impact by the Red Hat Security Response Team. Samba is a suite of programs used by machines to share files, printers, and other information. A heap-based buffer overflow flaw was found in the way Samba clients handle over-sized packets. If a client.http://www.edgeos.com/threats/32471 FreeBSD : Nagios -- Cross Site Scripting Vulnerability (1126)- (Found June 29, 2008 ) Medium Risk -- The remote host is missing an update to the systemThe following package is affected: nagios-develhttp://www.edgeos.com/threats/32470 Fedora Core 8 2008-4633: system-config-network- (Found June 29, 2008 ) Critical Risk -- The remote host is missing the patch for the advisory FEDORA-2008-4633 (system-config-network).This is the GUI of the network configuration tool,supporting Ethernet, Wireless, TokenRing, ADSL, ISDN and PPP.-Update Information:This security update fixes system-config-network-1.5.5-1.fc8, where the consolefile from Fedora 9 was distributed. This bug enabled every console user tochange the network configuration. Systems with system-config-network-1.5.5-1.fc8 installed should...http://www.edgeos.com/threats/32469 Fedora Core 7 2008-4606: stunnel- (Found June 29, 2008 ) Critical Risk -- The remote host is missing the patch for the advisory FEDORA-2008-4606 (stunnel).Stunnel is a socket wrapper which can provide SSL (Secure SocketsLayer) support to ordinary applications. For example, it can be usedin conjunction with imapd to create an SSL secure IMAP server.-Update Information:New upstream release 4.24 fixing security issue in certificate verification viaOCSP protocol: 9http:stunnel.mirt.netpipermailstunnel-announce2008-May000035.htmlhttp://www.edgeos.com/threats/32468 |