stargeek
PHP news website logo.
home    PHP scripts    articles    seo tools    links    search    contact    shop    realtors


Adobe's Version Cue could leave you open to local hackers







Adobe's Version Cue could leave you open
to local hackers

Adobe's Version Cue could leave you open
to local hackers
12/19/2004 03:00 PM

DrunkenBlog has an intriguing post about a local remote root exploit found for Adobe's Version Cue which ships with Adobe's Creative Suite of software. Version Cue is designed to help creative professionals find, share and track multiple versions of files and jobs in progress in a collaborative environment. The problem is, the system is insecure and "could permit a local malicious user to obtain root privileges on the target system". Beware the freelancer!! See: Bugtraq US-CERT

[Links from this story may be found on MacMerc.com. Click the title to delve deeper.]




This is a GrokNews Entry: (what is grok?)





Similar Items

Adobe's Version Cue could leave you open to local hackers

Grok Headline matches for Adobe's Version Cue could leave you open to local hackers

Wireless Hackers Leave No Tracks


Wireless Hackers Leave No Tracks 06/28/2004 04:48 PM
“…Before WLANs, if I were a hacker or virus writer or if I wanted to download or share illegal material, I had limited options. I could use my own account and eventually get caught after the feds tracked the abuse back to me. I could steal an AOL account by phishing until the feds used phone traces to catch me. Or I could wander into a Web cafe, do my evil deeds and flee, leaving closed-circuit TV footage, fingerprints and physical evidence the feds could use to put me behind bars. With WLANs, things have changed. On most streets in big metropolitan areas, a few people have broadband, and at least one uses it with an insecure wireless connection. Perhaps half of those people turn on the Windows XP firewall, but that won’t stop an attacker. They just get within range and connect. There’s no physical evidence, no closed-circuit TV, and the poor schmuck whose broadband connection gets used is the one whom the feds raid.”

TrakSoft Inc. Announces the Release of
PFS-Trans, Local Version, a Project
Funding System for Local Transportation
Departments and Private Transportation
Companies


TrakSoft Inc. Announces the Release of
PFS-Trans, Local Version, a Project
Funding System for Local Transportation
Departments and Private Transportation
Companies
02/01/2005 09:17 PM
TrakSoft Inc., a professional software development firm, today announced the January 31st release of an innovative and professional Project Funding System for Local Transportation Departments (Cities and Counties) and Private Transportation Construction Companies. [PRWEB Jan 31, 2005]

Open source hackers release open fixes
for MSFT vulnerabilityware


Open source hackers release open fixes
for MSFT vulnerabilityware
12/19/2003 11:45 AM
MSFT's apparent incapacity for patching MSIE vulnerabilities hasn't deterred open-source hackers, who have released a free software patch for a well-known Explorer vulnerability.

Update: Andrew sez, "...it contains buffer overflow exploits that are wide open for hax0r5 to take advantage of. In addition, it redirects weird URL requests to -it's own website-."

Update: Yoz points out that the patch has been patched. Link (via /.)

Local Area Security Knoppix 0.5 (210MB
Version)


Local Area Security Knoppix 0.5 (210MB
Version)
03/06/2004 01:49 AM
A live CD distribution focused on security and small footprint.

Tories leave door open for Archer


Tories leave door open for Archer 02/07/2005 01:55 AM
The Tory party would deal "sympathetically" with any application to rejoin by disgraced peer Lord Archer.

Open letter to Miramax: leave KFC Cinema
alone


Open letter to Miramax: leave KFC Cinema
alone
01/07/2004 06:11 PM
An anonymous BoingBoing reader writes:
Miramax has apparently jumped on the "let's be evil" bandwagon. Kung Fu Cult Cinema is a site for fans of Asian Cinema, including reviews, message boards, etc. As part of the site, there are links to websites outside of the U.S. that sell Asian films legally. Miramax has apparently sent the site a bogus "cease and desist" order, claiming that KFC Cinema cannot even *link* to said overseas sites without violating the copyright they have on certain asian films (Hero, Shaolin Soccer, etc.). The link above is to an open response to Miramax's letter.
Link

Possible PPTP Flaw Could Leave VPNs Open


Possible PPTP Flaw Could Leave VPNs Open 09/30/2002 01:52 PM

OS X flaw may leave Macs open to virus
attacks


OS X flaw may leave Macs open to virus
attacks
04/09/2004 04:06 PM
ZDNet UK Apr 9 2004 7:36PM GMT

Conflicting reports leave uranium case
open (USATODAY.com)


Conflicting reports leave uranium case
open (USATODAY.com)
07/21/2004 07:35 AM
USATODAY.com - In the case of Iraq's alleged attempt to buy uranium in Africa - a key reason the Bush administration cited for its belief that Iraq was developing weapons of mass destruction - not even hindsight is 20/20.

Windows NT4 servers open to hackers


Windows NT4 servers open to hackers 03/14/2005 05:56 PM

Java flaws open door to hackers


Java flaws open door to hackers 06/17/2005 03:37 PM

Open Source Version of .NET Ready


Open Source Version of .NET Ready 07/01/2004 07:05 PM
In the works since 2001, the Mono Project emerges from beta as version 1.0

Unpatched and vulnerable systems are
open to hackers seeking financial gain,
Symantec has warned in its latest report


Unpatched and vulnerable systems are
open to hackers seeking financial gain,
Symantec has warned in its latest report
09/21/2004 08:38 AM

SugarCRM preps next version of
open-source apps


SugarCRM preps next version of
open-source apps
04/18/2005 07:33 AM
SugarCRM is preparing for release later this month a major upgrade to its open-source CRM (customer relationship management) system, a software package SugarCRM's founders hope will woo customers that would otherwise turn to more expensive commercial CRM offerings.

Insecure handling of procfs descriptors
in UnixWare 7.1.1, 7.1.3 and Open UNIX
8.0.0 can lead to local privilege
escalation.


Insecure handling of procfs descriptors
in UnixWare 7.1.1, 7.1.3 and Open UNIX
8.0.0 can lead to local privilege
escalation.
11/12/2003 01:14 PM
advisories(-at-)texonet.com (Nov 12 2003)

Open source course management tool
version released: Sakai collaborative


Open source course management tool
version released: Sakai collaborative
07/16/2004 11:50 AM

The Sakai project , a multi-campus collaborative course management application development group, released a version of its Collaboration and Learning Environment . The CLE is available for downloading .

(thanks to Suzanne Bonefas )


Features: Adobe's InDesign and XML


Features: Adobe's InDesign and XML 08/04/2004 08:53 PM
David Miller takes us on a tour of the new XML features in Adobe's InDesign tool.

Adobe's Microsoft strategy


Adobe's Microsoft strategy 04/17/2004 11:21 AM
Knowledge@Wharton editors meet with Adobe CEO Bruce Chizen to discuss challenges, plans and competitive strategy against rivals such as Microsoft.

Adobe's Dynamic Documents


Adobe's Dynamic Documents 10/21/2002 08:19 AM
Three servers will now handle all the e-document needs of the enterprise, from dynamically-generated monthly reports to forms that allow customers to fill out and return information.

SVG Tips and Tricks: Adobe's SVG Viewer


SVG Tips and Tricks: Adobe's SVG Viewer 07/03/2002 07:16 PM
Antoine Quint takes a look at the special features available in the most popular SVG viewer around, Adobe's SVG Viewer 3.0.

Developers react to Adobe's Macromedia
buy


Developers react to Adobe's Macromedia
buy
04/18/2005 06:10 PM
Designers, developers express mix of optimism and apprehension about merger. Companies post FAQ to allay concerns.

Adobe's PDF hitches a ride with Linux


Adobe's PDF hitches a ride with Linux 06/10/2004 02:28 PM
The popular format for viewing documents will be adapted for the open-source operating system--debuting in navigation systems for cars.

Adobe's Chizen: Mac business has stayed
strong


Adobe's Chizen: Mac business has stayed
strong
04/22/2004 02:55 PM
In an interview with PC Magazine Editor-in-Chief Michael Miller, Adobe CEO Bruce Chizen offered some insight about his company's continued support of the Macintosh market. Chizen said that Adobe gets about a quarter of its revenue from mac users. While he admits that in some cases it hasn't made sense for Adobe to compete against Apple, Chizen also recognizes Mac user loyalty and said that Adobe's Mac business "has stayed relatively strong."

Adobe's Warnock awarded Lovelace Medal


Adobe's Warnock awarded Lovelace Medal 05/14/2004 06:06 AM
Pdf pioneer honoured

InCopy CS2 and GoLive CS2 round out
Adobe's big announcements of the day


InCopy CS2 and GoLive CS2 round out
Adobe's big announcements of the day
04/04/2005 02:25 AM
Adobe announced today Adobe GoLive CS2, a powerful authoring tool for Web and mobile content, and Adobe InCopy CS2, a professional writing and editing program that integrates tightly with Adobe InDesign CS2.

Adobe GoLive CS2 CSS


ExperimentalScene Announces Version 1.5
of Its Premier Windows XP Registry Tool,
RegCompact.net, Now Released as Open
Source, Free Software (GPL)


ExperimentalScene Announces Version 1.5
of Its Premier Windows XP Registry Tool,
RegCompact.net, Now Released as Open
Source, Free Software (GPL)
03/27/2005 03:20 AM
RegCompact.NET, a popular shareware utility for Windows is now free. It enables users to speed up their PC by optimizing the data storage of Windows XP's system registry, a critical and often sluggish part of the system. [PRWEB Mar 27, 2005]

Adobe's Policy Server tightens document
privacy


Adobe's Policy Server tightens document
privacy
01/05/2005 10:13 PM
Adobe Systems on Wednesday rolled out its LiveCycle Policy Server, which lets enterprise users apply policies to PDF documents to improve regulatory compliance and information privacy efforts.

ADVERTISEMENT

Reducing the Total Cost of Ownership
Learn how to reduce the total coast of ownership in enterprise data management in this case study.


Adobe's fourth-quarter results top
analysts' forecasts at US$83.3M


Adobe's fourth-quarter results top
analysts' forecasts at US$83.3M
12/12/2003 03:17 AM
Canadian Press via Canada.com Dec 12 2003 2:18AM ET

Adobe's Policy Server tightens document
privacy (InfoWorld)


Adobe's Policy Server tightens document
privacy (InfoWorld)
01/05/2005 10:37 PM
InfoWorld - Adobe Systems on Wednesday rolled out its LiveCycle Policy Server, which lets enterprise users apply policies to PDF documents to improve regulatory compliance and information privacy efforts.

Adobe's latest Creative Suite improves
product integration


Adobe's latest Creative Suite improves
product integration
04/04/2005 01:16 PM
ZDNet UK Apr 4 2005 5:24PM GMT

RAID Problem Exposes Adobe's Achilles'
Heel (Ziff Davis)


RAID Problem Exposes Adobe's Achilles'
Heel (Ziff Davis)
03/27/2005 11:35 PM
Ziff Davis - Opinion: Adobe's activation system conflicts with a few RAID controllers, causing hassles for some individual users. Such concerns should be just as important to the company as its big-picture enterprise goals.

Adobe's new stock photo hub--over
230,000 royalty-free images via Adobe
Bridge


Adobe's new stock photo hub--over
230,000 royalty-free images via Adobe
Bridge
04/04/2005 02:25 AM
Adobe today announced Adobe Stock Photos, a new stock photography service that offers designers a central hub for high-quality, royalty-free images for layout and design. Adobe Stock Photos is available from within Adobe Creative Suite 2 Premium and Standard Editions, Adobe Photoshop CS2, Adobe InDesign CS2, Adobe Illustrator CS2 and Adobe GoLive CS2. Adobe Stock Photos accesses hundreds of thousands of images from some of the world's leading stock photography providers, including: Photodisc by Getty Images; Comstock Images by Jupitermedia; Digital Vision; imageshop royalty free by zefaimages; and amana.

Adobe Bridge


Adobe's deal to acquire Macromedia sets
stage for online battle with Microsoft


Adobe's deal to acquire Macromedia sets
stage for online battle with Microsoft
04/19/2005 08:55 AM
Lubbockonline.com - Tue Apr 19, 07:45 am GMT

Ministers must trust local authorities
to spend wisely, says Local Gov. Assoc


Ministers must trust local authorities
to spend wisely, says Local Gov. Assoc
05/07/2004 07:34 AM
PublicTechnology.net May 7 2004 11:53AM GMT

UnixWare 7.1.3 Open UNIX 8.0.0 UnixWare
7.1.1 : Insecure handling of procfs
descriptors in UnixWare can lead to
local privilege escalation.


UnixWare 7.1.3 Open UNIX 8.0.0 UnixWare
7.1.1 : Insecure handling of procfs
descriptors in UnixWare can lead to
local privilege escalation.
11/12/2003 01:14 PM
security_at_sco.com (Nov 12 2003)

Vulns: Microsoft Windows Local
Descriptor Table Local Privilege
Escalation Vulnerability


Vulns: Microsoft Windows Local
Descriptor Table Local Privilege
Escalation Vulnerability
07/18/2004 04:53 PM
SecurityFocus Jul 18 2004 8:13PM GMT

In 2003, the residential local VoIP
market grew more than tenfold from about
10,000 local phone subscribers to more
than 130,000 by year end


In 2003, the residential local VoIP
market grew more than tenfold from about
10,000 local phone subscribers to more
than 130,000 by year end
09/15/2004 03:57 AM
[PRWEB Sep 15, 2004]

The Local, the Global, and the
Journalist In Between: Doug McGill's
Local Man Debuts


The Local, the Global, and the
Journalist In Between: Doug McGill's
Local Man Debuts
03/14/2005 04:35 PM
"We have freedom of speech and freedom of the press in this country," he says. "Much more easily, cheaply, and safely than ever before, we have the ability to export and share these precious freedoms via web-based journalism." It works. McGill uncovered a genocide this way.

Local Search Service “RateItAll Local”
Re-branded as “RateLocal.com”


Local Search Service “RateItAll Local”
Re-branded as “RateLocal.com”
02/05/2005 09:49 PM
Consumer review company RateItAll, Inc. has re-branded its Internet Yellow Page / Local Search service as RateLocal.com. [PRWEB Feb 5, 2005]
Grok Description matches for Adobe's Version Cue could leave you open to local hackers
GrokA matches for Adobe's Version Cue could leave you open to local hackers

Adobe's Version Cue could leave you open to local hackers

The following phrases have been identified by the grok system as matching this entry:

















Also check out:


Grok

Ipod Porn on the
Rise

Brief Abstract of
Wikipedia's
Mesothelioma Cancer
page

Get first aid
instructions in your
cell phone

IE is crap
JSPWiki gains
podcasting support

Hriders.com gives
unlimited free 1
Terabyte email
accounts

Copyright
legislation fails in
Congress

NYC: Developer Lead
- Intranet
(employee)

Your Customer Is A
Search Engine

Organize PDF files
in iTunes

Renamer4Mac - An
easy to use batch
file renamer

A workaround for
Safari and the Xanga
weblog service

A fix for iMovie
projects not opening
due to folder access

A Google personal
lookup plug-in for
Address Book

Set system and
network prefs from
the Terminal

Macworld Expo 2005
update and plans...

MailMan -- Multiple
mail lists for
virtual hosts

Manage iTunes audio
streams with smart
playlists

Add iSync/Address
Book support for
P908/P900 phones

Perl DBI: Tenth
birthday, Roadmap,
and Call for Funding

This Week on
perl5-porters (Nov
01-09 2004)

Dutch Perl Workshop
2005

CPAN master site
problems

Perl 5.8.6 released
Perl Advent Calendar
Returns for 2004

The Perl Review 1.1
is Available

CPAN Master Site
Back in Business

The Perl Review
Offers Cheaper
Subscription Options

"Practical mod_perl"
book goes opensource

M is for....
Death be not proud
Dante's Ferry
Finnish Thanksgiving
When puppies attack!
Be careful what you
wish for...

Keeping up with
Finnish or Buffer
Overflow

Arriba! Arriba! Sofa
Sofa!

Some things are too
hard to describe

Breathing hard with
a big stick

Shuffle
Tuomaan markkinat
2004

A Desert Christmas
Ten Years and
Fifteen Bucks

One of Cups, Six of
Needles

Java Desktop
Rolemaster Character
Generator 0.92.5

pyIrcServer
0.0.4.0-alpha

PGPCodeSigner 0.95
eAccelerator 0.9.1
PyQLogger 1.3.3.0
Ionflux Tools Class
Library 0.1.4

MyPhotoAlbum 3.1.2
Set CD-ROM Speed
1.1.3

mechanoid 0.1.7
PHP IDN 1.1
Apple suit seeks to
quiet leaks
(SiliconValley.com)

what is grok?