[SECURITY] [DSA 1902-1] New elinks packages fix arbitrary code execution

2009-10-05 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1902-1 secur...@debian.org http://www.debian.org/security/ Moritz Muehlenhoff October 05, 2009

CVE-2009-2898: Hyperic HQ - Stored XSS in alerts list

2009-10-05 Thread SpringSource Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 CVE-2009-2898: Stored XSS in alerts list Severity: Moderate Vendor: SpringSource Versions Affected: Hyperic HQ 3.2, 4.0, 4.1, 4.2-beta1. Earlier, unsupported versions may also be affected Description: An authenticated Hyperic user can create an a

CVE-2009-2897: Hyperic HQ - Reflected XSS in stack trace

2009-10-05 Thread SpringSource Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 CVE-2009-2897: Reflected XSS in stack trace Severity: Moderate Vendor: SpringSource Versions Affected: Hyperic HQ 3.2, 4.0, 4.1, 4.2-beta1. Earlier, unsupported versions may also be affected Description: The stack trace displayed on the default e

[oCERT-2009-014] Android denial-of-service issues

2009-10-05 Thread Andrea Barisani
#2009-014 Android denial-of-service issues Description: Android, an open source mobile phone platform, is affected by two bugs that lead to denial-of-service (DoS) conditions. Two separate DoS issues have been independently reported to oCERT. The most recent report concerns Android handling of

[SECURITY] [DSA 1901-1] New mediawiki1.7 packages fix several vulnerabilities

2009-10-05 Thread Giuseppe Iuculano
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1901-1 secur...@debian.org http://www.debian.org/security/ Giuseppe Iuculano October 05, 2009

Palm Pre WebOS <=1.1 Remote File Access Vulnerability

2009-10-05 Thread PalmPreHacker
I. Description The Palm Pre WebOS <=1.1 suffers from a JavaScript injection attack that allows a malicious attacker to access any file on the mobile device. Palm has patched this vulnerability and all users are recommended to upgrade to WebOS version 1.2+. Palm WebOS 1.2 patch information c

CORE-2009-0812-Hyperic HQ Multiple XSS

2009-10-05 Thread CORE Security Technologies Advisories
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Core Security Technologies - CoreLabs Advisory http://www.coresecurity.com/corelabs/ Hyperic HQ Multiple XSS 1. *Advisory Information* Title: Hyperic HQ Multiple XSS Advisory Id: CORE-2009-0812 Advisory URL: http://co

[security bulletin] HPSBUX02421 SSRT090047 rev.2 - HP-UX Running Kerberos, Remote Denial of Service (DoS), Execution of Arbitrary Code

2009-10-05 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c01717795 Version: 2 HPSBUX02421 SSRT090047 rev.2 - HP-UX Running Kerberos, Remote Denial of Service (DoS), Execution of Arbitrary Code NOTICE: The information in this Security Bulletin should