Sunday, August 8, 2010
Apple WebKit : SVG First-Letter Style Remote Code Execution Vulnerability
Users of Apple WebKit please be advised of a SVG First-Letter Style Remote Code Execution Vulnerability that has been identified.
To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)
Style
ZDI-10-142: ZDI-10-142: Apple Webkit SVG First-Letter Style Remote Code Execution Vulnerability
Apple WebKit
Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on
vulnerable installations of Apple Safari's Webkit. User interaction is
required to exploit this vulnerability in that the target must visit a
malicious page or open a malicious file.
Read more at www.criticalwatch.com
Thursday, August 5, 2010
Debian Security : New wget packages fix potential code execution vulnerability
Users of Debian Security please be advised of a New wget packages fix potential code execution vulnerability that has been identified.
To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)
DSA 2088-1: DSA 2088-1 New wget packages fix potential code execution
Debian Security
It was discovered that wget, a command line tool for downloading files
from the WWW, uses server-provided file names when creating local
files. This may lead to code execution in some scenarios.Read more at www.criticalwatch.com
Cisco Security : cisco-sa-20100804-fwsm - Multiple Vulnerabilities in Cisco Firewall Services Module vulnerabili
Users of Cisco Security please be advised of a cisco-sa-20100804-fwsm - Multiple Vulnerabilities in Cisco Firewall Services Module vulnerability that has been identified.
To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)
cisco-sa-20100804-fwsm: cisco-sa-20100804-fwsm - Multiple Vulnerabilities in Cisco Firewall Services Module
Cisco Security
Multiple vulnerabilities exist in the Cisco Firewall Services Module
(FWSM) for the Cisco Catalyst 6500 Series Switches and Cisco 7600
Series Routers that may cause the Cisco FWSM to reload after
processing crafted SunRPC or certain TCP packets. Repeated
exploitation could result in a sustained DoS condition.
Read more at www.criticalwatch.com
