CroatianEnglish

IN Focus

Research and development is an important element in the information security area. INFIGO IS understands the importance of continuous investment in research about vulnerabilities and prevention methods. That's why INFIGO IS started the In Focus project.

Security advisories published in this section are result of the INFIGO IS research. The main goal of that research work is raising consciousness about information security and making the security community aware of new security threats and vulnerabilities. Research results are also used for company's commercial activities in order to raise our clients' overall information systems' security.

INFIGO IS publishes security advisories according to INFIGO IS Disclosure policy.
All e-mail communication with the vendor must be encrypted. INFIGO IS uses PGP for e-mail encryption. Public key can be downloaded here.

Security advisories and the program code published on these pages are sole property of INFIGO IS and can be used only according to the Terms of Use.

rss

 

INFIGO IS Security Advisory #INFIGO-2009-07-09

Title:    NASA Common Data Format remote buffer overflow(s)
Advisory ID:    INFIGO-2009-07-09
Date:    2009-07-20
Risk Level:    High
Summary:   

CDF is the Common Data Format. It is a conceptual data abstraction for storing, manipulating, and accessing multidimensional data sets.  The basic component of CDF is a software programming interface that is a device-independent view of the CDF data model.

The CDF software package is used by hundreds of government agencies, universities, and private and commercial organizations as well as independent researchers on both national and international levels.  CDF has been adopted by the International Solar-Terrestrial Physics (ISTP) project as well as the Central Data Handling Facilities (CDHF) as their format of choice for storing and distributing key parameter data. A list of some applications that use the CDF library can be found at http://cdf.gsfc.nasa.gov/html/examples.html.

INFIGO IS Security Advisory #INFIGO-2008-04-08

Title:    ICQ 6 remote buffer overflow vulnerability
Advisory ID:    INFIGO-2008-04-08
Date:    2008-04-14
Risk Level:    High
Summary:   

ICQ (I Seek You) Instant Messenger is one of the most popular internet chat software. Since 1996, it has grown to a community of over 180 million users. It has features for instant messaging, chat, sending e-mail, SMS, file transfer, wireless-pager messages, etc.
INFIGO IS's security team identified a critical remote buffer overflow vulnerability in the latest ICQ version (ICQ 6.0). When a user writes a message in the status manager, the text string is processed with the boxelyRenderer module. The boxelyRenderer module has a vulnerability in the HTML tags processing code. If malformed HTML tags are set for the 'status message', boxelyRenderer will try to process the HTML tags, and a UNICODE heap overflow will occur.

INFIGO IS Security Advisory #INFIGO-2008-03-07

Title:    Surgemail 38k4 IMAP server remote stack overflow
Advisory ID:    INFIGO-2008-03-07
Date:    2008-03-21
Risk Level:    High
Summary:   

SurgeMail Mail Server Software Suite - combines advanced features, high performance and ease of use. Works on Windows, UNIX (Linux, Solaris etc.), Mac OSX, FreeBSD and others. Surgemail integrated email server is an Antispam Server, Antivirus Server, Webmail Server, Groupware Server, Blog Server and much more.
A remote vanilla stack overflow vulnerability exists in the Surgemail IMAP server. The vulnerability is caused due to a boundary error in the IMAP server, when processing overly long arguments of the 'LSUB' command. The vulnerability results in a simple stack overflow condition that can be trivially exploited.

INFIGO IS Security Advisory #INFIGO-2008-02-13

Title:    SOPHOS Email Security Appliance Cross Site Scripting Vulnerability
Advisory ID:    INFIGO-2008-02-13
Date:    2008-02-13
Risk Level:    Medium
Summary:   

Sophos ES1000 Email Security Appliance delivers protection against spam, viruses, Trojans, spyware and other malware. Sophos's award-winning anti-virus engine detects all types of malware in a single, high-speed scan.
During an audit of Sophos ES1000 Email Security Appliance, a Cross Site Scripting
vulnerability was discovered in its web administration interface. Lack of input validation for 'error' and 'go' parameters of the 'Login' script can be exploited by a malicious user to steal Sophos ES1000 Email Security Appliance administrator credentials, and shut down the appliance, or change its configuration.

XML feed
INfigo.hr © 2006 | design & development: Vega Intro