<?xml version="1.0" encoding="UTF-8"?>

<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns="http://purl.org/rss/1.0/">

<channel rdf:about="http://www.tenablesecurity.com/">
  <title>The Passive Vulnerability Scanner (PVS) Plugins</title>
  <link>http://www.tenablesecurity.com/tenable_plugins.pdf</link>
  <description>All the newest security checks for the Tenable Passive Vulnerability Scanner (PVS)</description>
  <image rdf:resource="http://www.tenablesecurity.com/images/RssLogo.jpg" />
  <items>

    <rdf:Seq>
<rdf:li rdf:resource="http://www.tenablesecurity.com/5651.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5650.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5649.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5648.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5647.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5646.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5645.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5644.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5643.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/5642.html" />

    </rdf:Seq>

  </items>
</channel>

<image rdf:about="http://www.tenablesecurity.com/images/RssLogo.jpg">
<title>PVS Plugins</title>
<url>http://www.tenablesecurity.com/images/RssLogo.jpg</url>
<link>http://www.tenablesecurity.com/</link>
</image>

<item rdf:about="http://www.tenablesecurity.com/5651.html">
<title>VLC Media Player &lt; 1.1.4 Patch Subversion Arbitrary DLL Injection Code Execution</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host contains an application that allows arbitrary code execution.<br><br>The remote host contains VLC player, a multi-media application.  For your information, the observed version of VLC is %L.<br><br>Versions of VLC media player earlier than 1.1.4 are potentially affected by a code execution vulnerability.  The application insecurely looks in its current working directory when resolving DLL dependencies, such as for 'wintab32.dll'.  If a malicious DLL with the same name as a required DLL is located in the application's current working directory, the malicious DLL will be loaded.<br><br><br><br>CVSS Base Score : 9.3<br>CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
<br /><br />See also :<br />
<br />
<a href="http://www.videolan.org/developers/vlc-branch/NEWS" target="_blank">http://www.videolan.org/developers/vlc-branch/NEWS</a><br />
<br />
Solution :<br />
<br />
Upgrade to VLC Media Player version 1.1.4 or later.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=48906" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=48906</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3124" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3124</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5651.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5650.html">
<title>Real Networks RealPlayer SP &lt; 1.1.5 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host is running an application that is vulnerable to multiple attack vectors.<br><br>The remote host is running RealPlayer, a multi-media application.  For your information, the observed build of RealPlayer SP is %L.<br><br>RealPlayer SP builds earlier than 12.0.0.879 are potentially affected by multiple vulnerabilities :<br><br>  - A RealPlayer malformed 'IVR' pointer index code execution vulnerability exists. (CVE-2010-2996)<br><br>A RealPlayerActiveX unauthorized file access vulnerability exists. (CVE-2010-3002)<br><br>A RealPlayer 'QCP' file parsing integer overflow vulnerability exists. (CVE-2010-0116)<br><br>A vulnerability exists in the way RealPlayer processes the dimensions in the 'YUV420' transformation of 'MP4' content. (CVE-2010-0117)<br><br>A heap-based buffer overflow vulnerability exists in RealPlayer's 'QCP' parsing. (CVE-20010-0120)<br><br>A vulnerability exists in the ActiveX IE plugin relating to the opening of multiple browser windows. (CVE-2010-3001)<br><br><br><br>CVSS Base Score : 9.3<br>CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
<br /><br />See also :<br />
<br />
<a href="http://service.real.com/realplayer/security/08262010_player/en" target="_blank">http://service.real.com/realplayer/security/08262010_player/en</a><br />
<br />
Solution :<br />
<br />
Upgrade to RealPlayer SP 1.1.5 or later.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=48907" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=48907</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0116" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0116</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0117" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0117</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0120" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0120</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2996" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2996</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3000" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3000</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3001" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3001</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3002" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3002</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5650.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5649.html">
<title>Linksys WAP default credentials</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host is configured with default or easily-guessed credentials<br><br>The remote host is a wireless access point (WAP).  This version of Linksys shipped with a default userID and password which can be used to gain elevated access to the device.  In this case, the credentials are Gemtek/gemtekswd .  Since these credentials are hard coded into the device image, there is not a way to change them via the administrative tools.   <br><br><br>CVSS Base Score : 7.5<br>CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
<br /><br />See also :<br />
<br />
<a href="www.icysilence.org/?p=268" target="_blank">www.icysilence.org/?p=268</a><br />
<br />
Solution :<br />
<br />
obtain a fix from the vendor<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5649.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5648.html">
<title>Novell iPrint Client &lt; 5.44 Multiple Flaws</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host contains an application that is vulnerable to multiple attack vectors.<br><br>For your information, the observed version of Novell iPrint Client is %L.<br><br>Versions of Novell iPrint Client earlier than 5.44 are potentially affected by multiple vulnerabilities :<br><br>  - A buffer overflow was discovered in how iPrint client handles the 'call-back-url' parameter value for a 'op-client-interface-version' operation where the 'result-type' parameter is set to 'url'.<br><br>  - An uninitialized pointer vulnerability in ienipp.ocx was discovered and allows an attacker to exploit an issue where the uninitialized pointer is called and the process jumps to an address space controllable by the attacker.<br><br><br><br>CVSS Base Score : 9.3<br>CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
<br /><br />See also :<br />
<br />
<a href="http://www.novell.com/support/viewContent.do?externalId=7006679" target="_blank">http://www.novell.com/support/viewContent.do?externalId=7006679</a><br />
<br />
Solution :<br />
<br />
Upgrade to Novell iPrint Client 5.44 or later.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=48407" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=48407</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1527" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1527</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3105" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3105</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5648.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5647.html">
<title>Novell iPrint Client &lt; 5.42 Multiple Flaws</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host contains an application that is vulnerable to multiple attack vectors.<br><br>For your information, the observed version of Novell iPrint Client is %L<br><br>Versions of Novell iPrint Client earlier than 5.42 are potentially affected by multiple vulnerabilities :<br><br>  - Due to a flaw in the nipplib.dll module, it may be possible for a remote attacker to delete arbitrary files from the remote system via the 'CleanUploadFiles' method provided by an ActiveX control. (TPTI-10-05)<br><br>  - By passing a specially crafted value to the 'debug' parameter in the ActiveX control ienipp.ocx, it may be possible for an attacker to trigger a stack-based buffer overflow, potentially resulting in arbitrary code execution within the context of the user running the browser. (TPTI-10-06)<br><br>  - Due to improper validation of plugin parameters, it may be possible for an attacker to trigger a buffer overflow condition resulting in arbitrary code execution within the context of the user running the browser. (ZDI-10-139)<br><br>Due to improper validation of plugin parameters it may be possible for an attacker to trigger a stack-based buffer overflow, potentially resulting in arbitrary code execution within the context of the user running the browser. (ZDI-10-140)<br><br><br><br>CVSS Base Score : 9.3<br>CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
<br /><br />See also :<br />
<br />
<a href="http://download.novell.com/Download?buildid=ftwZBxEFjIg~" target="_blank">http://download.novell.com/Download?buildid=ftwZBxEFjIg~</a><br />
<br />
Solution :<br />
<br />
Upgrade to Novell iPrint Client 5.42 or later.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=48364" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=48364</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3106" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3106</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3107" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3107</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3108" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3108</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3109" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3109</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5647.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5646.html">
<title>MySQL Community Server 5.1 &lt; 5.1.49 Multiple Denial of Service Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote database server is vulnerable to multiple denial of service attacks.<br><br>For your information, the observed version of MySQL Community Server is %L.<br><br>Versions of MySQL Community Server 5.1 earlier than 5.1.49 are potentially affected by multiple vulnerabilities :<br><br>  - After changing the values of the 'innodb_file_format' or 'innodb_file_per_table' configuration parameters, DDL statements could cause a server crash. (Bug #55039)<br><br>Joins involving a table with a unique SET column could cause a server crash. (Bug #54575)<br><br>Incorrect handling of NULL arguments could lead to a crash for IN() or CASE operations when ULL arguments were either passed explicitly as arguments (for IN()) or implicitly generated by the WITH ROLLUP modifier which could lead to a crash. (Bug #54477)<br><br>  - A malformed argument to the BINLOG statement could result in Valgrind warnings or a server crash. (Bug #54393)<br><br>  - Use of TEMPORARY InnoDB tables with nullabale columns could cause a server crash. (Bug #54044)<br><br>  - The server could crash if there were alternate reads from two indexes on a table using the HANDLER interface. (Bug #54007)<br><br>  - Using EXPLAIN with specially crafted queries could lead to a crash. (Bug #52711)<br><br>  - 'LOAD DATA INFILE' did not check for SQL errors and sent an OK packet even when errors were already reported. (Bug #52512)<br><br>CVSS Base Score : 4.0<br>CVSS2#AV:N/AC:L/Au:S/C:N/I:N/A:P
<br /><br />See also :<br />
<br />
<a href="http://bugs.mysql.com/bug.php?id=52512" target="_blank">http://bugs.mysql.com/bug.php?id=52512</a><br />
<br />
Solution :<br />
<br />
Upgrade to MySQL Community Server 5.1.49 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5646.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5645.html">
<title>database TDS failed login detection</title>
<description><![CDATA[<br />
The following UserID just failed a SQL login
<br /><br />
Solution :<br />
<br />
<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5645.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5644.html">
<title>Google Chrome &lt; 5.0.375.127 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host contains a web browser that is vulnerable to multiple attack vectors.<br><br>For your information, the observed version of Google Chrome installed on the remote host is %L.<br><br>Versions of Google Chrome earlier than 5.0.375.127 are potentially affected by multiple vulnerabilities :<br><br>A memory corruption issue with file dialog. (Bug 45400)<br><br>A memory corruption issue with SVGs. (Bug 49596)<br><br>An issue relating to a bad cast with text editing. (Bug 49268)<br><br>  - A possible address bar spoofing vulnerability caused by a history bug. (Bug 49964)<br><br>  - A memory corruption issue in MIME type handling. (Bugs 50515, 51835)<br><br>A crash on shutdown due to a notifications bug. (Bug 50553)<br><br>Omnibox autosuggest is enabled when a user might be typing a password. (Bug 51146)<br><br>A memory corruption issue in Ruby support. (Bug 51654)<br><br>A memory corruption issue in Geolocation support. (51670)<br><br><br><br>CVSS Base Score : 9.3<br>CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
<br /><br />See also :<br />
<br />
<a href="http://googlechromereleases.blogspot.com/2010/08/stable-channel-update_19.html" target="_blank">http://googlechromereleases.blogspot.com/2010/08/stable-channel-update_19.html</a><br />
<br />
Solution :<br />
<br />
Upgrade to Google Chrome 5.0.375.127 or later.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=48383" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=48383</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3112" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3112</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3113" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3113</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3114" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3114</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3115" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3115</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3116" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3116</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3117" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3117</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3118" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3118</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3119" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3119</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3120" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3120</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5644.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5643.html">
<title>Drupal CCK "Node Reference" Module &lt; 6.x-2.8 Security Bypass Vulnerability</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote web server is hosting a web application that is vulnerable to a security bypass attack.<br><br>The remote web server hosts a Drupal install that uses the CCK "Node Reference" module.  Versions of the CCK Module earlier than 6.x-2.8 are potentially affected by a security bypass vulnerability.  The application provides a backend URL that is used for asynchronous requests by the 'autocomplete' widget which fails to correctly check that the user had field level access to the source field.<br><br><br><br>CVSS Base Score : 5.0<br>CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N
<br /><br />See also :<br />
<br />
<a href="http://drupal.org/node/880736" target="_blank">http://drupal.org/node/880736</a><br />
<br />
Solution :<br />
<br />
Upgrade to Drupal CCK module 6.x-2.8 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-30T14:43:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5643.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/5642.html">
<title>CouchDB &lt; 0.11.2 Futon Admin Interface Cross-Site Request Forgery</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote database server is vulnerable to a cross-site request forgery attack.<br><br>The remote host is running CouchDB, a document-oriented database.  For your information, the observed version of CouchDB is %L.<br><br>Versions of CouchDB earlier than 0.11.2 are potentially affected by a cross-site request forgery vulnerability.  The application fails to properly sanitize user-supplied input before it is used in the Futon administrative interface.<br><br> remote attacker could exploit this to execute arbitrary script code in the security context of CouchDB's admin interface.<br><br><br><br>CVSS Base Score : 3.5<br>CVSS2#AV:N/AC:M/Au:N/C:N/I:P/A:N
<br /><br />See also :<br />
<br />
<a href="http://archives.neohapsis.com/archives/fulldisclosure/2010-08/0200.html" target="_blank">http://archives.neohapsis.com/archives/fulldisclosure/2010-08/0200.html</a><br />
<br />
Solution :<br />
<br />
Upgrade to CouchDB 0.11.2 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=48382" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=48382</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2234" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2234</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2010]]></description>
<dc:date>2010-08-19T14:26:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/5642.html</link>

</item>


</rdf:RDF>
