New Security Vulnerabilities 16th March 2007
The following new security tests were added to Telspace' database:
TOTAL THREATS IN THE DATABASE 14165
NEW THREATS RISK FACTOR SUMMARY
(*****) Urgent Risk 6
(**** ) Critical Risk 19
(*** ) High Risk 2
(** ) Medium Risk 8
(* ) Low Risk 0
NEW THREATS FAMILY SUMMARY
Slackware Local Checks 6
Mandrake Local Checks 5
Windows 4
Fedora Local Checks 4
Gentoo Local Checks 3
Web Services 3
Remote Shell Access 2
Centos Local Checks 2
Debian Local Checks 2
Red Hat Local Checks 2
FreeBSD Local Checks 1
MacOS X Local Checks 1
(*****) Urgent Risk - Web Services
WordPress 2.1.1 Backdoor Vulnerability
(*****) Urgent Risk - Remote Shell Access
Eudora WorldMail Mail Management Server Heap Overflow Vulnerability
(*****) Urgent Risk - Web Services
WebCalendar noSet Variable Overwrite Vulnerability
(*****) Urgent Risk - Remote Shell Access
Ipswitch IMail Server < 2006.2 Multiple Buffer Overflow Vulnerabilities
(*****) Urgent Risk - Windows
Kaspersky Antivirus UPX File Decompression Denial of Service Vulnerability
(*****) Urgent Risk - Windows
Symantec Mail Security for SMTP Arbitrary Code Execution Vulnerability
(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0106
(**** ) Critical Risk - MacOS X Local Checks
Quicktime < 7.1.5 (Mac OS X)
(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:051: snort
(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:050: mozilla-firefox
(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:052: mozilla-thunderbird
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0106: gnupg
(**** ) Critical Risk - Gentoo Local Checks
[GLSA-200703-09] Smb4K: Multiple vulnerabilities
(**** ) Critical Risk - Debian Local Checks
[DSA1264] DSA-1264-1 php4
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 5 2007-277: kernel
(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0078
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-291: kernel
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 5 2007-309: thunderbird
(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:053: util-linux
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0078: thunderbird
(**** ) Critical Risk - Mandrake Local Checks
MDKA-2007:017: tcpdump
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-308: thunderbird
(**** ) Critical Risk - Windows
Quicktime < 7.1.5 (Windows)
(**** ) Critical Risk - Debian Local Checks
[DSA1265] DSA-1265-1 mozilla
(**** ) Critical Risk - Windows
Mozilla Thunderbird < 1.5.0.10
(*** ) High Risk - Gentoo Local Checks
[GLSA-200703-08] SeaMonkey: Multiple vulnerabilities
(*** ) High Risk - Web Services
Symantec Mail Security for SMTP Default Credentials
(** ) Medium Risk - Slackware Local Checks
SSA-2007-066-01 gnupg
(** ) Medium Risk - Gentoo Local Checks
[GLSA-200703-10] KHTML: Cross-site scripting (XSS) vulnerability
(** ) Medium Risk - Slackware Local Checks
SSA-2007-066-06 imagemagick
(** ) Medium Risk - Slackware Local Checks
SSA-2007-066-02 x11
(** ) Medium Risk - Slackware Local Checks
SSA-2007-066-03 mozilla-firefox
(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : mod_jk -- long URL stack overflow vulnerability (924)
(** ) Medium Risk - Slackware Local Checks
SSA-2007-066-04 mozilla-thunderbird
(** ) Medium Risk - Slackware Local Checks
SSA-2007-066-05 seamonkey |