Security Focus

Syndicate content SecurityFocus
SecurityFocus is the most comprehensive and trusted source of security information on the Internet. We are a vendor-neutral site that provides objective, timely and comprehensive security information to all members of the security community, from end users, security hobbyists and network administrators to security consultants, IT Managers, CIOs and CSOs.
Updated: 1 hour 1 min ago

Vuln: WebKit Regular Expression Handling Remote Memory Corruption Vulnerability

2 September, 2010 - 01:00
WebKit Regular Expression Handling Remote Memory Corruption Vulnerability
Categories: Security

Vuln: WebKit JavaScript Array Signedness Error Remote Code Execution Vulnerability

2 September, 2010 - 01:00
WebKit JavaScript Array Signedness Error Remote Code Execution Vulnerability
Categories: Security

Vuln: Fedora SSSD LDAP Unauthenticated Bind Security Bypass Vulnerability

2 September, 2010 - 01:00
Fedora SSSD LDAP Unauthenticated Bind Security Bypass Vulnerability
Categories: Security

Vuln: Novell Netware SSH Remote Buffer Overflow Vulnerability

2 September, 2010 - 01:00
Novell Netware SSH Remote Buffer Overflow Vulnerability
Categories: Security

Vuln: WebKit 'font-face' and 'use' Elements Use-After-Free Remote Code Execution Vulnerability

2 September, 2010 - 01:00
WebKit 'font-face' and 'use' Elements Use-After-Free Remote Code Execution Vulnerability
Categories: Security

Vuln: Mozilla Firefox, Thunderbird, and SeaMonkey 'nsTreeSelection' Remote Code Execution Vulnerability

2 September, 2010 - 01:00
Mozilla Firefox, Thunderbird, and SeaMonkey 'nsTreeSelection' Remote Code Execution Vulnerability
Categories: Security

Bugtraq: Tortoise SVN DLL Hijacking Vulnerability

1 September, 2010 - 06:02
Tortoise SVN DLL Hijacking Vulnerability
Categories: Security

Bugtraq: [security bulletin] HPSBMA02571 SSRT100034 rev.1 - HP Insight Diagnostics Online Edition, Remote Cross Site Scripting (XSS)

1 September, 2010 - 06:02
[security bulletin] HPSBMA02571 SSRT100034 rev.1 - HP Insight Diagnostics Online Edition, Remote Cross Site Scripting (XSS)
Categories: Security

Bugtraq: [USN-981-1] libwww-perl vulnerability

1 September, 2010 - 06:02
[USN-981-1] libwww-perl vulnerability
Categories: Security

Bugtraq: [USN-980-1] bogofilter vulnerability

1 September, 2010 - 06:02
[USN-980-1] bogofilter vulnerability
Categories: Security

Bugtraq: [security bulletin] HPSBMA01212 SSRT5998 rev.4 - HP System Management Homepage Running PHP, Remote Denial of Service (DoS), Cross Site Scripting (XSS), Execution of Arbitrary Code

1 September, 2010 - 04:02
[security bulletin] HPSBMA01212 SSRT5998 rev.4 - HP System Management Homepage Running PHP, Remote Denial of Service (DoS), Cross Site Scripting (XSS), Execution of Arbitrary Code
Categories: Security

Bugtraq: django in combination with mod wsgi on apache on default debian and ubuntu installations does not place any bounds on the maximum size of a file upload

1 September, 2010 - 04:02
django in combination with mod wsgi on apache on default debian and ubuntu installations does not place any bounds on the maximum size of a file upload
Categories: Security

Vuln: Softbiz Jokes and Funny Pictures Script 'sbjoke_id' Parameter SQL Injection Vulnerability

1 September, 2010 - 01:00
Softbiz Jokes and Funny Pictures Script 'sbjoke_id' Parameter SQL Injection Vulnerability
Categories: Security

Vuln: OpenSSL 'ssl3_get_key_exchange()' Use-After-Free Memory Corruption Vulnerability

1 September, 2010 - 01:00
OpenSSL 'ssl3_get_key_exchange()' Use-After-Free Memory Corruption Vulnerability
Categories: Security

Bugtraq: [SECURITY] [DSA 2100-1] New openssl packages fix double free

1 September, 2010 - 00:02
[SECURITY] [DSA 2100-1] New openssl packages fix double free
Categories: Security

Bugtraq: Re: [Full-disclosure] QtWeb Browser version 3.3 build 043 Insecure DLL Hijacking Vulnerability (wintab32.dll)

1 September, 2010 - 00:02
Re: [Full-disclosure] QtWeb Browser version 3.3 build 043 Insecure DLL Hijacking Vulnerability (wintab32.dll)
Categories: Security

Bugtraq: [ MDVSA-2010:165 ] libHX

1 September, 2010 - 00:02
[ MDVSA-2010:165 ] libHX
Categories: Security

Bugtraq: {Lostmon - Groups} Safari for windows Invalid SGV text style Webkit.dll DoS

1 September, 2010 - 00:02
{Lostmon - Groups} Safari for windows Invalid SGV text style Webkit.dll DoS
Categories: Security

Bugtraq: R7-0036: FCKEditor.NET File Upload Code Execution

31 August, 2010 - 06:02
R7-0036: FCKEditor.NET File Upload Code Execution
Categories: Security

Bugtraq: [0day] Apple QuickTime "_Marshaled_pUnk" backdoor param arbitrary code execution

31 August, 2010 - 06:02
[0day] Apple QuickTime "_Marshaled_pUnk" backdoor param arbitrary code execution
Categories: Security