lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <001d01c5402c$55f3b1e0$0200a8c0@box>
Date: Wed Apr 13 14:27:40 2005
From: class101 at hat-squad.com (class101@...-SQUAD.com)
Subject: BakBone NetVault 6.x/7.x multiples
	vulnerabilities + exploit

As a recall, there is one month, the Hat-Squad found 2 security holes
affecting BakBone NetVault all versions.
And as far as I know (sorry if I missed the hotfix), there is still no patch
available .....
We will re-publish this warning as long as (each month) there is no fix.
Some temp. countermeasures are available in both *.pdf

BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow advisory

class101.org/netv-remhbof.pdf

BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow exploit

class101.org/36/55/op.php

BakBone NetVault 6.x/7.x Local Stack Buffer Overflow advisory

class101.org/netv-locsbof.pdf

BakBone NetVault 6.x/7.x Local Stack Buffer Overflow exploit

class101.org/36/55/op.php


-------------------------------------------------------------
class101
Jr. Researcher
Hat-Squad.com
-------------------------------------------------------------

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ