HP Security Bulletin HPSBMU02895 SSRT101253 4 – Potential security vulnerabilities have been identified with HP Data Protector. These vulnerabilities could be remotely exploited to allow an increase of privilege, create a Denial of Service (DoS), or execute arbitrary code. Revision 4 of this advisory.
Category Archives: Security
Security
Kmart Shops Hit By Payment Card Hack Attack
Android's Cyanogenmod Open To MitM Attacks
Safecrackers Cost Cracked With $150 Widget
These Are The Emails Snowden Sent To First Introduce His Epic NSA Leaks
PayPal Inc BB #85 MB iOS 4.6 – Auth Bypass Vulnerability
Posted by Vulnerability Lab on Oct 13
Document Title:
===============
PayPal Inc BB #85 MB iOS 4.6 – Auth Bypass Vulnerability
References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=895
PayPal Security UID: Vxda0S
Video: http://www.vulnerability-lab.com/get_content.php?id=1338
View: https://www.youtube.com/watch?v=RXubXP_r2M4
Release Date:
=============
2014-10-09
Vulnerability Laboratory ID (VL-ID):
====================================…
Paypal Community Help Forums Cross Site Scripting
Paypal Community Help Forums suffered from a cross site scripting vulnerability.
Etiko CMS Cross Site Scripting / SQL Injection
Etiko CMS suffers from cross site scripting and remote SQL injection vulnerabilities. Note that this finding houses site-specific data.
CVE-2014-7975
The do_umount function in fs/namespace.c in the Linux kernel through 3.17 does not require the CAP_SYS_ADMIN capability for do_remount_sb calls that change the root filesystem to read-only, which allows local users to cause a denial of service (loss of writability) by making certain unshare system calls, clearing the / MNT_LOCKED flag, and making an MNT_FORCE umount system call.
CVE-2014-8086
Race condition in the ext4_file_write_iter function in fs/ext4/file.c in the Linux kernel through 3.17 allows local users to cause a denial of service (file unavailability) via a combination of a write action and an F_SETFL fcntl operation for the O_DIRECT flag.