Gr8 Tutorial Script suffers from a remote SQL injection vulnerability.
Monthly Archives: March 2017
Gr8 Gallery Script SQL Injection
Gr8 Gallery Script suffers from a remote SQL injection vulnerability.
NETGEAR WNR2000v5 (Un)authenticated hidden_lang_avi Stack Overflow
The NETGEAR WNR2000 router has a buffer overflow vulnerability in the hidden_lang_avi parameter. In order to exploit it, it is necessary to guess the value of a certain timestamp which is in the configuration of the router. An authenticated attacker can simply fetch this from a page, but an unauthenticated attacker has to brute force it. Brute-forcing the timestamp token might take a few minutes, a few hours, or days, but it is guaranteed that it can be brute-forced. This Metasploit module implements both modes, and it works very reliably. It has been tested with the WNR2000v5, firmware versions 1.0.0.34 and 1.0.0.18. It should also work with hardware revisions v4 and v3, but this has not been tested – with these routers it might be necessary to adjust the LibcBase variable as well as the gadget addresses.
DSA-3817 jbig2dec – security update
Multiple security issues have been found in the JBIG2 decoder library,
which may lead to lead to denial of service or the execution of arbitrary
code if a malformed image file (usually embedded in a PDF document) is
opened.
Vuln: Expat UTF-8 Character XML Parsing Remote Denial of Service Vulnerability
Expat UTF-8 Character XML Parsing Remote Denial of Service Vulnerability
Vuln: Libexpat Expat CVE-2012-6702 Predictable Random Number Generator Weakness
Libexpat Expat CVE-2012-6702 Predictable Random Number Generator Weakness
tcpreplay-4.2.1-1.el5
Here is what is fixed in this release:
– Fix reporting of rates < 1Mbps (#348)
– Option –unique-ip not working properly (#346)
—-
Features and fixes include:
– MAC rewriting capabilities by Pedro Arthur (#313)
– Fix several issues identified by Coverity (#305)
– Packet distortion –fuzz-seed option by Gabriel Ganne (#302)
– Add –unique-ip-loops option to modify IPs every few loops (#296)
– Netmap startup delay increase (#290)
– tcpcapinfo buffer overflow vulnerablily (#278)
– Update git-clone instructions by Kyle McDonald (#277)
– Allow fractions for –pps option (#270)
– Print per-loop stats with –stats=0 (#269)
– Add protection against packet drift by Guillaume Scott (#268)
– Print flow stats periodically with –stats output (#262)
– Include Travis-CI build support by Ilya Shipitsin (#264) (#285)
– tcpreplay won’t replay all packets in a pcap file with –netmap (#255)
– First and last packet times in –stats output (#239)
– Switch to wire speed after 30 minutes at 6 Gbps (#210)
– tcprewrite fix checksum properly for fragmented packets (#190)
tcpreplay-4.2.1-1.fc25
Here is what is fixed in this release:
– Fix reporting of rates < 1Mbps (#348)
– Option –unique-ip not working properly (#346)
—-
Features and fixes include:
– MAC rewriting capabilities by Pedro Arthur (#313)
– Fix several issues identified by Coverity (#305)
– Packet distortion –fuzz-seed option by Gabriel Ganne (#302)
– Add –unique-ip-loops option to modify IPs every few loops (#296)
– Netmap startup delay increase (#290)
– tcpcapinfo buffer overflow vulnerablily (#278)
– Update git-clone instructions by Kyle McDonald (#277)
– Allow fractions for –pps option (#270)
– Print per-loop stats with –stats=0 (#269)
– Add protection against packet drift by Guillaume Scott (#268)
– Print flow stats periodically with –stats output (#262)
– Include Travis-CI build support by Ilya Shipitsin (#264) (#285)
– tcpreplay won’t replay all packets in a pcap file with –netmap (#255)
– First and last packet times in –stats output (#239)
– Switch to wire speed after 30 minutes at 6 Gbps (#210)
– tcprewrite fix checksum properly for fragmented packets (#190)
tcpreplay-4.2.1-1.el6
Here is what is fixed in this release:
– Fix reporting of rates < 1Mbps (#348)
– Option –unique-ip not working properly (#346)
—-
Features and fixes include:
– MAC rewriting capabilities by Pedro Arthur (#313)
– Fix several issues identified by Coverity (#305)
– Packet distortion –fuzz-seed option by Gabriel Ganne (#302)
– Add –unique-ip-loops option to modify IPs every few loops (#296)
– Netmap startup delay increase (#290)
– tcpcapinfo buffer overflow vulnerablily (#278)
– Update git-clone instructions by Kyle McDonald (#277)
– Allow fractions for –pps option (#270)
– Print per-loop stats with –stats=0 (#269)
– Add protection against packet drift by Guillaume Scott (#268)
– Print flow stats periodically with –stats output (#262)
– Include Travis-CI build support by Ilya Shipitsin (#264) (#285)
– tcpreplay won’t replay all packets in a pcap file with –netmap (#255)
– First and last packet times in –stats output (#239)
– Switch to wire speed after 30 minutes at 6 Gbps (#210)
– tcprewrite fix checksum properly for fragmented packets (#190)
—-
Patch CVE-2017-6429.
Tcpcapinfo utility of Tcpreplay has a buffer overflow vulnerability associated with parsing a crafted pcap file. This occurs in the src/tcpcapinfo.c file when capture has a packet that is too large to handle.
References:
http://seclists.org/bugtraq/2017/Mar/22
Upstream bug:
https://github.com/appneta/tcpreplay/issues/278
tcpreplay-4.2.1-1.el7
Here is what is fixed in this release:
– Fix reporting of rates < 1Mbps (#348)
– Option –unique-ip not working properly (#346)
—-
Features and fixes include:
– MAC rewriting capabilities by Pedro Arthur (#313)
– Fix several issues identified by Coverity (#305)
– Packet distortion –fuzz-seed option by Gabriel Ganne (#302)
– Add –unique-ip-loops option to modify IPs every few loops (#296)
– Netmap startup delay increase (#290)
– tcpcapinfo buffer overflow vulnerablily (#278)
– Update git-clone instructions by Kyle McDonald (#277)
– Allow fractions for –pps option (#270)
– Print per-loop stats with –stats=0 (#269)
– Add protection against packet drift by Guillaume Scott (#268)
– Print flow stats periodically with –stats output (#262)
– Include Travis-CI build support by Ilya Shipitsin (#264) (#285)
– tcpreplay won’t replay all packets in a pcap file with –netmap (#255)
– First and last packet times in –stats output (#239)
– Switch to wire speed after 30 minutes at 6 Gbps (#210)
– tcprewrite fix checksum properly for fragmented packets (#190)
—-
Patch CVE-2017-6429.
Tcpcapinfo utility of Tcpreplay has a buffer overflow vulnerability associated with parsing a crafted pcap file. This occurs in the src/tcpcapinfo.c file when capture has a packet that is too large to handle.
References:
http://seclists.org/bugtraq/2017/Mar/22
Upstream bug:
https://github.com/appneta/tcpreplay/issues/278