Network Security News – Tuesday, October 18, 2005 Events
HP-UX on Itanium Unspecified Local DoS
HP-UX on Itanium contains a flaw that may allow a malicious user to cause a local denial of service. No further details have been provided.. Read more at osvdb.org/20014
Solaris SCTP Socket Option Processing Unspecified DoS
Sun Solaris contains a flaw related to the SCTP socket option processing that may allow a malicious user to cause a kernel panic. No further details have been provided.. Read more at osvdb.org/20013
Trillian ICQ Protocol Reverse Connection DoS
Trillian contains a flaw that may allow a remote denial of service. The issue is triggered when making a reverse direct connection by using the ICQ protocol with a different ICQ client, and will result in loss of availability for the application.. Read more at osvdb.org/20006
wget NTLM Username ntlm_output() Function Overflow
A remote overflow exists in wget. The 'ntlm_output()' function fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted HTTP redirect request containing an overly long NTLM username, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.. Read more at osvdb.org/20011
XMail -t Argument Command Line Local Overflow
A local overflow exists in XMail. The 'AddressFromAtPtr()' function fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted request containing an overly long string to the -t argument, a malicious user can cause arbitrary code execution resulting in a loss of integrity.. Read more at osvdb.org/20010
Leave a Reply