push software vulnerabilities
vulnerabilities.aspcode.net
Searching push software vulnerabilities
Symantec Norton Personal Firewall 2002 allows r
Personal
|
Firewall
|
Symantec
|
Norton
|
Symantec Norton Personal Firewall 2002 allows remote attackers to bypass the portscan protection by using a (1) SYN/FIN, (2) SYN/FIN/URG, (3) SYN/FIN/PUSH, or (4) SYN/FIN/URG/PUSH scan.
SnortCenter 0.9.5, when configured to push Snor
SnortCenter
|
SnortCenter 0.9.5, when configured to push Snort rules, stores the rules in a temporary file with world-readable and world-writable permissions, which allows local users to obtain usernames and passwords for the alert database servers.
Sony Ericsson P900 Beamer allows remote attacke
attackers
|
Ericsson
|
service
|
remote
|
denial
|
Beamer
|
allows
|
cause
|
Sony
|
P900
|
Sony Ericsson P900 Beamer allows remote attackers to cause a denial of service (panic) via an obexftp session with a long filename in an OBEX File Transfer or OBEX Object Push.
Format string vulnerability in the foreign_opti
foreign_option
|
vulnerability
|
dhcp-option
|
specifiers
|
arbitrary
|
optionsc
|
function
|
clients
|
execute
|
OpenVPN
|
command
|
option
|
allows
|
string
|
Format
|
remote
|
code
|
push
|
via
|
20x
|
Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option.
Memory leak in the icmp_push_reply function in
icmp_push_reply
|
function
|
before
|
Memory
|
Linux
|
leak
|
Memory leak in the icmp_push_reply function in Linux 2.6 before 2.6.12.6 and 2.6.13 allows remote attackers to cause a denial of service (memory consumption) via a large number of crafted packets that cause the ip_append_data function to fail, aka "DST leak in icmp_push_reply."
Directory traversal vulnerability in OBEX Push
vulnerability
|
Bluetooth
|
Directory
|
traversal
|
services
|
Toshiba
|
Stack
|
OBEX
|
Push
|
Directory traversal vulnerability in OBEX Push services in Toshiba Bluetooth Stack 4.00.23(T) and earlier allows remote attackers to upload arbitrary files to arbitrary remote locations specified by .. (dot dot) sequences, as demonstrated by ..\\ sequences in the RFILE argument of ussp-push.
Buffer overflow in the Bluetooth OBEX Object Pu
NeighborsEXE"
|
Neighbors
|
Bluetooth
|
overflow
|
service
|
AmbiCom
|
Object
|
Buffer
|
"Blue
|
Blue
|
OBEX
|
Push
|
Buffer overflow in the Bluetooth OBEX Object Push service in "Blue Neighbors.EXE" in AmbiCom Blue Neighbors 2.50 Build 2500 and earlier allows remote attackers to execute arbitrary code via a long file name, as demonstrated via a long RFILE argument to ussp-push.
The ip_push_pending_frames function in Linux 2.
ip_push_pending_frames
|
function
|
before
|
Linux
|
26x
|
24x
|
The ip_push_pending_frames function in Linux 2.4.x and 2.6.x before 2.6.16 increments the IP ID field when sending a RST after receiving unsolicited TCP SYN-ACK packets, which allows remote attackers to conduct an Idle Scan (nmap -sI) attack, which bypasses intended protections against such attacks.
The Motorola PEBL U6, the Motorola V600, and po
attackers
|
Bluetooth
|
Motorola
|
possibly
|
device's
|
devices
|
trusted
|
device
|
phones
|
target
|
remote
|
other
|
their
|
allow
|
entry
|
V600
|
list
|
E398
|
PEBL
|
add
|
own
|
The Motorola PEBL U6, the Motorola V600, and possibly the Motorola E398 and other Motorola phones allow remote attackers to add an entry for their own Bluetooth device to a target device's list of trusted devices (aka Device History), and possibly obtain AT level access to the target device, by initiating and interrupting an OBEX Push Profile that pretends to send a vCard, aka a "HeloMoto" attack.
Heap-based buffer overflow in the array_push fu
array_push
|
Heap-based
|
hashcashc
|
Hashcash
|
function
|
overflow
|
before
|
buffer
|
Heap-based buffer overflow in the array_push function in hashcash.c for Hashcash before 1.21 might allow attackers to execute arbitrary code via crafted entries.
Memory leak in the push_align function in src/u
Vilistextum
|
push_align
|
src/utilc
|
function
|
before
|
Memory
|
leak
|
Memory leak in the push_align function in src/util.c in Vilistextum before 2.6.9 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors related to the tmp_align variable. NOTE: it is not clear whether this is a vulnerability, due to the functionality of the product.
The Sony Ericsson K700i and W810i phones allow
attackers
|
Ericsson
|
service
|
phones
|
denial
|
remote
|
cause
|
K700i
|
W810i
|
allow
|
Sony
|
The Sony Ericsson K700i and W810i phones allow remote attackers to cause a denial of service (continual modal dialogs and UI unavailability) by repeatedly trying to OBEX push a file over Bluetooth, as demonstrated by ussp-push.
The Motorola MOTORAZR V3 phone allows remote at
attackers
|
MOTORAZR
|
Motorola
|
service
|
denial
|
allows
|
remote
|
phone
|
cause
|
The Motorola MOTORAZR V3 phone allows remote attackers to cause a denial of service (continual modal dialogs and UI unavailability) by repeatedly trying to OBEX push a file over Bluetooth, as demonstrated by ussp-push.
The Nokia N70 phone allows remote attackers to
attackers
|
service
|
remote
|
denial
|
allows
|
Nokia
|
cause
|
phone
|
N70
|
The Nokia N70 phone allows remote attackers to cause a denial of service (continual modal dialogs and UI unavailability) by repeatedly trying to OBEX push a file over Bluetooth, as demonstrated by ussp-push.
The LG Chocolate KG800 phone allows remote atta
attackers
|
Chocolate
|
service
|
denial
|
remote
|
allows
|
KG800
|
phone
|
cause
|
The LG Chocolate KG800 phone allows remote attackers to cause a denial of service (continual modal dialogs and UI unavailability) by repeatedly trying to OBEX push a file over Bluetooth, as demonstrated by ussp-push.
Certain chunk handlers in libpng before 1.0.29
handlers
|
Certain
|
before
|
libpng
|
chunk
|
Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which trigger out-of-bounds read operations.
Software vulnerabilities results 1 to 17 of 17
Page:
1