<rss version="2.0"><channel><title>VulnWatch (vulnwatch) Mailing List</title>
<link>http://seclists.org/#vulnwatch</link>
<description>A non-discussion, non-patch, all-vulnerability annoucement list supported and run by a community of volunteer moderators distributed around the world.</description>
<language>en-us</language><ttl>60</ttl>
<item><title>Source Boston 2008 security con, March 12-14</title><description>Posted by Chris Wysopal on Feb 19</description>
<link>http://seclists.org/vulnwatch/2008/q1/0019.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0019.html</guid>
<pubDate>Tue, 19 Feb 2008 10:57:35 -0500 (EST)</pubDate></item>
<item><title>iDefense Security Advisory 02.12.08: ClamAV libclamav PE File Integer Overflow Vulnerability</title><description>Posted by iDefense Labs on Feb 12</description>
<link>http://seclists.org/vulnwatch/2008/q1/0018.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0018.html</guid>
<pubDate>Tue, 12 Feb 2008 12:35:03 -0500</pubDate></item>
<item><title>CSA-L03: Linux kernel vmsplice unchecked user-pointer dereference</title><description>Posted by Wojciech Purczynski on Feb 12</description>
<link>http://seclists.org/vulnwatch/2008/q1/0017.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0017.html</guid>
<pubDate>Tue, 12 Feb 2008 08:50:49 +0100</pubDate></item>
<item><title>iDefense Security Advisory 02.04.08: Hewlett-Packard Network Node Manager Topology Manager Service DoS Vulnerability</title><description>Posted by iDefense Labs on Feb 06</description>
<link>http://seclists.org/vulnwatch/2008/q1/0016.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0016.html</guid>
<pubDate>Wed, 06 Feb 2008 14:19:06 -0500</pubDate></item>
<item><title>iDefense Security Advisory 01.31.08: IBM Informix Dynamic Server onedcu File Creation Vulnerability</title><description>Posted by iDefense Labs on Feb 04</description>
<link>http://seclists.org/vulnwatch/2008/q1/0015.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0015.html</guid>
<pubDate>Mon, 04 Feb 2008 14:49:53 -0500</pubDate></item>
<item><title>iDefense Security Advisory 01.31.08: IBM Informix Dynamic Server SQLIDEBUG File Creation Vulnerability</title><description>Posted by iDefense Labs on Feb 04</description>
<link>http://seclists.org/vulnwatch/2008/q1/0014.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0014.html</guid>
<pubDate>Mon, 04 Feb 2008 14:48:20 -0500</pubDate></item>
<item><title>CORE-2007-1218: MPlayer 1.0rc2 buffer overflow vulnerability</title><description>Posted by CORE Security Technologies Advisories on Feb 04</description>
<link>http://seclists.org/vulnwatch/2008/q1/0013.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0013.html</guid>
<pubDate>Mon, 04 Feb 2008 17:43:30 -0200</pubDate></item>
<item><title>CORE-2008-0122: MPlayer arbitrary pointer dereference</title><description>Posted by CORE Security Technologies Advisories on Feb 04</description>
<link>http://seclists.org/vulnwatch/2008/q1/0012.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0012.html</guid>
<pubDate>Mon, 04 Feb 2008 17:27:16 -0200</pubDate></item>
<item><title>Cisco Security Advisory: Cisco Wireless Control System Tomcat mod_jk.so Vulnerability</title><description>Posted by Cisco Systems Product Security Incident Response Team on Jan 30</description>
<link>http://seclists.org/vulnwatch/2008/q1/0011.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0011.html</guid>
<pubDate>Wed, 30 Jan 2008 11:58:45 -0500</pubDate></item>
<item><title>CORE-2007-1219: Firebird Remote Memory Corruption</title><description>Posted by Core Security Technologies Advisories on Jan 28</description>
<link>http://seclists.org/vulnwatch/2008/q1/0010.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0010.html</guid>
<pubDate>Mon, 28 Jan 2008 15:32:00 -0200</pubDate></item>
<item><title>Syhunt: HFS (HTTP File Server) Username Spoofing and Log ForgingInjection Vulnerability</title><description>Posted by Alec Storm on Jan 23</description>
<link>http://seclists.org/vulnwatch/2008/q1/0009.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0009.html</guid>
<pubDate>Wed, 23 Jan 2008 15:50:57 -0200</pubDate></item>
<item><title>Syhunt: HFS (HTTP File Server) Log Arbitrary FileDirectory Manipulation and Denial-of-Service Vulnerabilities</title><description>Posted by Alec Storm on Jan 23</description>
<link>http://seclists.org/vulnwatch/2008/q1/0008.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0008.html</guid>
<pubDate>Wed, 23 Jan 2008 15:49:51 -0200</pubDate></item>
<item><title>Syhunt: HFS (HTTP File Server) Template Cross-Site Scripting and Information Disclosure Vulnerabilities</title><description>Posted by Alec Storm on Jan 23</description>
<link>http://seclists.org/vulnwatch/2008/q1/0007.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0007.html</guid>
<pubDate>Wed, 23 Jan 2008 15:48:38 -0200</pubDate></item>
<item><title>Cisco Security Advisory: Default Passwords in the Application Velocity System</title><description>Posted by Cisco Systems Product Security Incident Response Team on Jan 23</description>
<link>http://seclists.org/vulnwatch/2008/q1/0006.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0006.html</guid>
<pubDate>Wed, 23 Jan 2008 12:28:29 -0500</pubDate></item>
<item><title>iDefense Security Advisory 01.09.08: Novell NetWare Client nicm.sys Local Privilege Escalation Vulnerability</title><description>Posted by iDefense Labs on Jan 09</description>
<link>http://seclists.org/vulnwatch/2008/q1/0005.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0005.html</guid>
<pubDate>Wed, 09 Jan 2008 16:06:53 -0500</pubDate></item>
<item><title>Corsaire Security Advisory: Sun J2RE DoS issue</title><description>Posted by advisories on Jan 8</description>
<link>http://seclists.org/vulnwatch/2008/q1/0004.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0004.html</guid>
<pubDate>Tue, 8 Jan 2008 12:36:32 -0000</pubDate></item>
<item><title>iDefense Security Advisory 01.07.08: Motorola netOctopus Agent MSR Write Privilege Escalation Vulnerability</title><description>Posted by iDefense Labs on Jan 07</description>
<link>http://seclists.org/vulnwatch/2008/q1/0003.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0003.html</guid>
<pubDate>Mon, 07 Jan 2008 16:09:53 -0500</pubDate></item>
<item><title>CORE-2007-1106: SynCE Remote Command Injection</title><description>Posted by CORE Security Technologies Advisories on Jan 07</description>
<link>http://seclists.org/vulnwatch/2008/q1/0002.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0002.html</guid>
<pubDate>Mon, 07 Jan 2008 16:36:11 -0300</pubDate></item>
<item><title>iDefense Security Advisory 12.24.07: Novell ZENworks Endpoint Security Management Local Privilege Escalation Vulnerability</title><description>Posted by iDefense Labs on Jan 04</description>
<link>http://seclists.org/vulnwatch/2008/q1/0001.html</link><guid isPermaLink="true">http://seclists.org/vulnwatch/2008/q1/0001.html</guid>
<pubDate>Fri, 04 Jan 2008 16:42:46 -0500</pubDate></item>
</channel></rss>