Sunday, August 8, 2010

Apple WebKit : SVG First-Letter Style Remote Code Execution Vulnerability http://bit.ly/bExezu

Apple WebKit : SVG First-Letter Style Remote Code Execution Vulnerability

Users of Apple WebKit please be advised of a SVG First-Letter Style Remote Code Execution Vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
Style

ZDI-10-142: ZDI-10-142: Apple Webkit SVG First-Letter Style Remote Code Execution Vulnerability

Apple WebKit
Vulnerability Details:

This vulnerability allows remote attackers to execute arbitrary code on

vulnerable installations of Apple Safari's Webkit. User interaction is

required to exploit this vulnerability in that the target must visit a

malicious page or open a malicious file.
Read more at www.criticalwatch.com
 

Thursday, August 5, 2010

Debian Security : New wget packages fix potential code execution vulnerability http://bit.ly/aEl8sR

Debian Security : New wget packages fix potential code execution vulnerability

Users of Debian Security please be advised of a New wget packages fix potential code execution vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
DSA 2088-1: DSA 2088-1 New wget packages fix potential code execution
Debian Security
It was discovered that wget, a command line tool for downloading files

from the WWW, uses server-provided file names when creating local

files. This may lead to code execution in some scenarios.Read more at www.criticalwatch.com
 

Cisco Security : cisco-sa-20100804-fwsm - Multiple Vulnerabilities in Cisco Firewall Services Module vulnerabili http://bit.ly/93y0wi

Cisco Security : cisco-sa-20100804-fwsm - Multiple Vulnerabilities in Cisco Firewall Services Module vulnerabili

Users of Cisco Security please be advised of a cisco-sa-20100804-fwsm - Multiple Vulnerabilities in Cisco Firewall Services Module vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com

cisco-sa-20100804-fwsm: cisco-sa-20100804-fwsm - Multiple Vulnerabilities in Cisco Firewall Services Module

Cisco Security
Multiple vulnerabilities exist in the Cisco Firewall Services Module

(FWSM) for the Cisco Catalyst 6500 Series Switches and Cisco 7600

Series Routers that may cause the Cisco FWSM to reload after

processing crafted SunRPC or certain TCP packets. Repeated

exploitation could result in a sustained DoS condition.


Read more at www.criticalwatch.com
 

Citrix ICA : Heap Offset Overflow in Citrix ICA Clients vulnerability http://bit.ly/cfisGv