[FD] Reflecting XSS vulnerabilities in CMS Saurus v. 4.7 (CE)

2015-01-27 Thread Steffen Rösemann
Advisory: Reflecting XSS vulnerabilities in CMS Saurus v. 4.7 (CE) Advisory ID: SROEADV-2015-05 Author: Steffen Rösemann Affected Software: CMS Saurus v. 4.7 (CE, released: 12.08.2014) Vendor URL: http://www.saurus.info Vendor Status: patched CVE-ID: - == Vulnerability Desc

[FD] Qualys Security Advisory CVE-2015-0235 - GHOST: glibc gethostbyname buffer overflow

2015-01-27 Thread Qualys Security Advisory
Qualys Security Advisory CVE-2015-0235 GHOST: glibc gethostbyname buffer overflow --[ Contents ] 1 - Summary 2 - Analysis 3 - Mitigating factors 4 - Case studies 5 - Exploitation 6 - Acknowledgments --[ 1 - Summary ]

[FD] CVE-2015-1042 - Mantis BugTracker 1.2.19 - URL Redirection to Untrusted Site ('Open Redirect')

2015-01-27 Thread Popovici, Alejo (LATCO - Buenos Aires)
Mantis BugTracker 1.2.19 URL Redirection to Untrusted Site ('Open Redirect') ** - Affected Vendor: Mantis - Affected System: BugTracker 1.2.19 - Vulnerabilities' Status: Fixed

[FD] [AMPLIA-ARA100614] OS X Gatekeeper Bypass Vulnerability

2015-01-27 Thread Amplia Security Advisories
OS X Gatekeeper Bypass Vulnerability Amplia Security - Amplia Security Research Advisory (AMPLIA-ARA100614) Advisory ID: AMPLIA-ARA100614 Advisory URL: http://www.ampliasecurity.com/advisories/os-x-gatekeeper-bypass-vulnerability.html, http://www.ampliasecurity.com/advisories/AMPLIA-ARA100614.txt

[FD] NEW VMSA-2015-0001 - VMware vCenter Server, ESXi, Workstation, Player, and Fusion updates address resolve security issues

2015-01-27 Thread VMware Security Response Center
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - VMware Security Advisory Advisory ID: VMSA-2015-0001 Synopsis:VMware vCenter Server, ESXi, Workstation, Player, and Fusion updates address s

[FD] [CORE-2015-0003] - FreeBSD Kernel Multiple Vulnerabilities

2015-01-27 Thread CORE Advisories Team
Core Security - Corelabs Advisory http://corelabs.coresecurity.com/ FreeBSD Kernel Multiple Vulnerabilities 1. *Advisory Information* Title: FreeBSD Kernel Multiple Vulnerabilities Advisory ID: CORE-2015-0003 Advisory URL: http://www.coresecurity.com/content/freebsd-kernel-multiple-vulnerabil