<?xml version="1.0" encoding="ISO-8859-1"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">
<channel>
    <title>SecurityReason IT News</title>
    <link>http://securityreason.com/archive_it_news/0/1</link>
    <description>SecurityReason IT News - SecurityReason.com - "Security is Our Reason"</description>
    <language>en-us</language>
    <copyright>Copyright © SecurityReason. All Rights Reserved.</copyright>
    <lastBuildDate>Mon, 13 Feb 2012 15:09:54 +0100</lastBuildDate>
	<image>
      <title>SecurityReason IT News</title>
      <link>http://securityreason.com/archive_it_news/0/1</link>
      <url>http://securityreason.com/gfx/logo.gif</url>
	  <height>55</height>
	  <width>144</width>
	  <description>SecurityReason IT News - SecurityReason.com</description>
    </image>
	<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/securityreason_itnews" /><feedburner:info uri="securityreason_itnews" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item>
	<title>Multiple Vendors libc/fnmatch(3) DoS</title>
	
      <link>http://feedproxy.google.com/~r/securityreason_itnews/~3/b0i3-am0N48/0x42</link>
	  <guid isPermaLink="false">http://securityreason.com/it_news/0/0x42</guid>
      <description>Author : SecurityReason&lt;br&gt;&lt;br&gt;New advisory about vulnerabilities in libc for multiple vendors &amp;quot;Multiple Vendors libc/fnmatch(3) DoS (incl apache)&amp;quot;. A 'resource exhaustion' vulnerability has been identified in  fnmatch(3) function.&lt;br&gt;Attacker, what may modify first and second parameters(pattern,string) of fnmatch(3), may cause to CPU resource exhaustion. &lt;br /&gt;
&lt;b&gt;More:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://securityreason.com/achievement_securityalert/98"&gt;http://securityreason.com/achievement_securityalert/98&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Exploit:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://cxib.net/stuff/apr_fnmatch.txt"&gt;http://cxib.net/stuff/apr_fnmatch.txt&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;References:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://cvsweb.netbsd.org/bsdweb.cgi/src/lib/libc/gen/fnmatch.c"&gt;http://cvsweb.netbsd.org/bsdweb.cgi/src/lib/libc/gen/fnmatch.c&lt;/A&gt;&lt;br /&gt;
&lt;A HREF="https://rhn.redhat.com/errata/RHSA-2011-0507.html"&gt;https://rhn.redhat.com/errata/RHSA-2011-0507.html&lt;/A&gt;&lt;br /&gt;
&lt;A HREF="http://httpd.apache.org/security/vulnerabilities_22.html"&gt;http://httpd.apache.org/security/vulnerabilities_22.html&lt;/A&gt;&lt;br /&gt;
&lt;A HREF="http://www.apache.org/dist/apr/CHANGES-APR-1.4"&gt;http://www.apache.org/dist/apr/CHANGES-APR-1.4&lt;/A&gt;&lt;br /&gt;
&lt;A HREF="http://cwe.mitre.org/data/definitions/399.html"&gt;http://cwe.mitre.org/data/definitions/399.html&lt;/A&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/CLTtFO1mIIBl6zIv16--3XEDUUI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CLTtFO1mIIBl6zIv16--3XEDUUI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/CLTtFO1mIIBl6zIv16--3XEDUUI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CLTtFO1mIIBl6zIv16--3XEDUUI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/securityreason_itnews/~4/b0i3-am0N48" height="1" width="1"/&gt;</description>	  
	  <pubDate>Fri, 13 May 2011 00:38:18 +0200</pubDate>
    <feedburner:origLink>http://securityreason.com/it_news/0/0x42</feedburner:origLink></item>
		<item>
	<title>vsftpd flaw could disable wide range of servers</title>
	
      <link>http://feedproxy.google.com/~r/securityreason_itnews/~3/AdvMHbjUzJc/0x40</link>
	  <guid isPermaLink="false">http://securityreason.com/it_news/0/0x40</guid>
      <description>Author : SecurityReason&lt;br&gt;&lt;br&gt;&lt;br /&gt;
New advisory about vulnerability in vsftpd server &amp;quot;vsftpd 2.3.2 remote denial-of-service&amp;quot;. A 'resource exhaustion' vulnerability has been identified in ls.c file.&lt;br&gt;The potential scale of risk is high.&lt;br /&gt;
&lt;b&gt;Examples of vulnerable servers:&lt;/b&gt;&lt;br /&gt;
- ftp.gnu.org&lt;br /&gt;
- ftp.kernel.org&lt;br /&gt;
- ftpgen.wip4.adobe.com&lt;br /&gt;
- ftp.oracle.com&lt;br /&gt;
- ftp.freebsd.org&lt;br /&gt;
&lt;br /&gt;
Any code with huge complexity, could allow of denial of service if an affected system received vulnerable pattern. &lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;More:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://securityreason.com/achievement_securityalert/95"&gt;http://securityreason.com/achievement_securityalert/95&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Exploit:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://cxib.net/stuff/vspoc232.c"&gt;http://cxib.net/stuff/vspoc232.c&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
Fix for this issue has been created together with vsftpd projects.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;ChangeLog:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="ftp://vsftpd.beasts.org/users/cevans/untar/vsftpd-2.3.4/Changelog"&gt;ftp://vsftpd.beasts.org/users/cevans/untar/vsftpd-2.3.4/Changelog&lt;/A&gt;&lt;br /&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/FRLwWQnCd6unF7Cw7cqL1MPvmtU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/FRLwWQnCd6unF7Cw7cqL1MPvmtU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/FRLwWQnCd6unF7Cw7cqL1MPvmtU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/FRLwWQnCd6unF7Cw7cqL1MPvmtU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/securityreason_itnews/~4/AdvMHbjUzJc" height="1" width="1"/&gt;</description>	  
	  <pubDate>Tue, 01 Mar 2011 00:19:23 +0100</pubDate>
    <feedburner:origLink>http://securityreason.com/it_news/0/0x40</feedburner:origLink></item>
		<item>
	<title>GNU libc Multiple Vulnerabilities</title>
	
      <link>http://feedproxy.google.com/~r/securityreason_itnews/~3/yRDh_x45aBw/0x3f</link>
	  <guid isPermaLink="false">http://securityreason.com/it_news/0/0x3f</guid>
      <description>Author : Maksymilian Arciemowicz&lt;br&gt;&lt;br&gt;New advisory about vulnerabilities in GNU libc  &amp;quot;GNU libc/regcomp(3) Multiple Vulnerabilities&amp;quot;. A 'resource exhaustion' vulnerabilities has been identified in GNU C library. &lt;br&gt;&lt;b&gt;exploit:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://cxib.net/stuff/proftpd.gnu.c"&gt;http://cxib.net/stuff/proftpd.gnu.c&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
Exploit can be used to attack some proftpd servers with wirtting privialges.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;More:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://securityreason.com/achievement_securityalert/93"&gt;http://securityreason.com/achievement_securityalert/93&lt;/A&gt;&lt;br /&gt;
&lt;A HREF="http://www.kb.cert.org/vuls/id/912279"&gt;http://www.kb.cert.org/vuls/id/912279&lt;/A&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/qlvDDrpSwDBUQ5r124wTb_IYZOI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/qlvDDrpSwDBUQ5r124wTb_IYZOI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/qlvDDrpSwDBUQ5r124wTb_IYZOI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/qlvDDrpSwDBUQ5r124wTb_IYZOI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/securityreason_itnews/~4/yRDh_x45aBw" height="1" width="1"/&gt;</description>	  
	  <pubDate>Fri, 07 Jan 2011 20:36:35 +0100</pubDate>
    <feedburner:origLink>http://securityreason.com/it_news/0/0x3f</feedburner:origLink></item>
		<item>
	<title>Apache Insecure mod_rewrite PCRE Resource Exhaustion</title>
	
      <link>http://feedproxy.google.com/~r/securityreason_itnews/~3/EmY6zsNkOLc/0x3e</link>
	  <guid isPermaLink="false">http://securityreason.com/it_news/0/0x3e</guid>
      <description>Author : Maksymilian Arciemowicz&lt;br&gt;&lt;br&gt;New advisory about vulnerabilities in apache mod_rewrite &amp;quot;Apache Insecure mod_rewrite PCRE Resource Exhaustion&amp;quot;. A 'resource exhaustion' vulnerability has been identified in PCRE library. &lt;br&gt;Using mod_rewrite and PCRE libs can dangerous for stability apache server.  Everybody know that using pcre regular expressions can be dangerous, and using multiple regular expressions in .htaccess is no good idea. &lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;More:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://securityreason.com/achievement_securityalert/92"&gt;http://securityreason.com/achievement_securityalert/92&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;PoC:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://cxib.net/stuff/rewrite.pcre.txt"&gt;http://cxib.net/stuff/rewrite.pcre.txt&lt;/A&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/YnWt6zBAyEUoU5fRMJrd9QAKI_M/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YnWt6zBAyEUoU5fRMJrd9QAKI_M/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/YnWt6zBAyEUoU5fRMJrd9QAKI_M/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YnWt6zBAyEUoU5fRMJrd9QAKI_M/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/securityreason_itnews/~4/EmY6zsNkOLc" height="1" width="1"/&gt;</description>	  
	  <pubDate>Tue, 21 Dec 2010 00:16:13 +0100</pubDate>
    <feedburner:origLink>http://securityreason.com/it_news/0/0x3e</feedburner:origLink></item>
		<item>
	<title>PHP 5.3.3 Null Pointer Dereference</title>
	
      <link>http://feedproxy.google.com/~r/securityreason_itnews/~3/6eFN5I56IVk/0x3d</link>
	  <guid isPermaLink="false">http://securityreason.com/it_news/0/0x3d</guid>
      <description>Author : SecurityReason&lt;br&gt;&lt;br&gt;SecurityReason realised new advisory about vulnerabilities in PHP 5.3.3 and PHP 5.2.14 &amp;quot;PHP 5.3.3/5.2.14 ZipArchive::getArchiveComment NULL Pointer Deference&amp;quot;. The main problem exist in function ZipArchive::getArchiveComment(). &lt;br&gt;&lt;b&gt;More:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://securityreason.com/achievement_securityalert/90"&gt;http://securityreason.com/achievement_securityalert/90&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Fix 5.2:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://svn.php.net/viewvc/php/php-src/branches/PHP_5_2/ext/zip/php_zip.c"&gt;http://svn.php.net/viewvc/php/php-src/branches/PHP_5_2/ext/zip/php_zip.c&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Fix 5.3:&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://svn.php.net/viewvc/php/php-src/branches/PHP_5_3/ext/zip/php_zip.c"&gt;http://svn.php.net/viewvc/php/php-src/branches/PHP_5_3/ext/zip/php_zip.c&lt;/A&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;MDVSA-2010:218&lt;/b&gt;&lt;br /&gt;
&lt;A HREF="http://lists.mandriva.com/security-announce/2010-10/msg00044.php"&gt;http://lists.mandriva.com/security-announce/2010-10/msg00044.php&lt;/A&gt;&lt;br /&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/NA7QlPiSHSD-fibGQZZI6ttn6lI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/NA7QlPiSHSD-fibGQZZI6ttn6lI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/NA7QlPiSHSD-fibGQZZI6ttn6lI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/NA7QlPiSHSD-fibGQZZI6ttn6lI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/securityreason_itnews/~4/6eFN5I56IVk" height="1" width="1"/&gt;</description>	  
	  <pubDate>Sat, 06 Nov 2010 14:25:01 +0100</pubDate>
    <feedburner:origLink>http://securityreason.com/it_news/0/0x3d</feedburner:origLink></item>
		</channel>
</rss>

