Packet Storm Exploit 2013-0813-1 – Oracle Java IntegerInterleavedRaster.verify() Signed Integer Overflow
The IntegerInterleavedRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a signed integer overflow that allows bypassing of "dataOffsets[0]" boundary checks. This exploit code demonstrates remote code execution by popping calc.exe. It was obtained through the Packet Storm Bug Bounty program.
[remote] – MinaliC Webserver 2.0.0 – Buffer Overflow (Egghunter)
MinaliC Webserver 2.0.0 - Buffer Overflow (Egghunter)
[remote] – HP StorageWorks P4000 Virtual SAN Appliance Login Buffer Overflow
HP StorageWorks P4000 Virtual SAN Appliance Login Buffer Overflow
[remote] – Open-FTPD 1.2 Arbitrary File Upload
Open-FTPD 1.2 Arbitrary File Upload
http://www.kantharalak.sisaket.police.go.th/Mains/research/
Here is the original post: http://www.kantharalak.sisaket.police.go.th/Mains/research/
WikiLeaks cables: US ‘lobbied Russia on behalf of Visa and MasterCard’ – The Guardian
The Guardian WikiLeaks cables: US 'lobbied Russia on behalf of Visa and MasterCard' The Guardian A state department cable released this afternoon by WikiLeaks reveals that US diplomats intervened to try to amend a draft law going through Russia's duma, or lower house of parliament. Their explicit aim was to ensure the new law did not "disadvantage ... and more
Packet Storm Advisory 0811-1 – Oracle Java storeImageArray()
Oracle Java versions prior to 7u25 suffer from an invalid array indexing vulnerability that exists within the native storeImageArray() function inside jre/bin/awt.dll. This vulnerability allows for remote code execution.