«
Expand/Collapse
162 items tagged "sun"
Related tags:
security vulnerabilities [+],
november [+],
hacks [+],
code [+],
txt [+],
sun products [+],
software development kit [+],
server [+],
remote security [+],
remote buffer overflow [+],
red hat security [+],
oracle java [+],
local [+],
products [+],
java web start [+],
java [+],
enterprise server [+],
directory service manager [+],
directory [+],
web server version [+],
virtualbox [+],
sunscreen [+],
sun oracle [+],
safer use [+],
remote [+],
red [+],
local security [+],
java web server [+],
oracle [+],
zdi [+],
system communications [+],
sun java jdk [+],
sun flower [+],
sql injection [+],
solaris kernel [+],
solaris code [+],
shell [+],
service [+],
remote exploit [+],
proof of concept [+],
manager. authentication [+],
local buffer overflow [+],
injection [+],
guest [+],
flower sql [+],
flower [+],
firewall [+],
exploits [+],
environment [+],
denial of service [+],
communications express [+],
advisory [+],
zero day [+],
web server admin [+],
user [+],
system directory [+],
sunjava [+],
sun solaris 10 [+],
stack overflow [+],
sound libraries [+],
server ldap [+],
security assessment [+],
s system [+],
privilege escalation vulnerability [+],
microsystems [+],
memory consumption [+],
mandriva linux [+],
ldap query [+],
java plug [+],
http [+],
home [+],
format string [+],
exploit [+],
dos vulnerability [+],
directory server [+],
day [+],
based buffer overflow [+],
arbitrary code execution [+],
arbitrary code [+],
administrative interface [+],
vulnerability [+],
solaris [+],
vulnerability sun [+],
winter solstice [+],
website [+],
webapps [+],
web attacks [+],
vuln [+],
uv levels [+],
update [+],
type [+],
tunnel [+],
tracker [+],
target area [+],
system application [+],
sunlight [+],
sun website [+],
sun ray server software [+],
sun jre [+],
sun chart [+],
sun burns [+],
suite [+],
steven dufresne [+],
steven [+],
source of energy [+],
solstice [+],
solar tracker [+],
solar panels [+],
solar panel [+],
solar cells [+],
solar [+],
site [+],
security advisory [+],
search dos [+],
rm 1 [+],
ray server [+],
projection surface [+],
projection [+],
process [+],
physical components [+],
panel [+],
opensso [+],
null pointer [+],
multitouch [+],
mr. burns [+],
mr burns [+],
memory corruption [+],
macs [+],
mac os x [+],
mac os [+],
jdk [+],
java web [+],
java flaw [+],
interactive museum [+],
integer overflow vulnerability [+],
information disclosure vulnerability [+],
hijacking [+],
heliostat [+],
handhelds [+],
hackintosh [+],
green [+],
gabriel [+],
flaw [+],
flaming hoops [+],
filesystem [+],
exposes [+],
exhibit [+],
ereader [+],
energy [+],
dsml [+],
diy [+],
data [+],
dangerous web [+],
cross [+],
command line argument [+],
com [+],
cmm [+],
clever techniques [+],
beta [+],
battery [+],
arduino [+],
amount of time [+],
amount [+],
Software [+],
sun java runtime [+],
sun solaris [+],
system [+],
runtime [+],
java runtime environment [+],
cve [+],
sun java runtime environment [+],
sun java [+],
java system [+],
sun microsystems [+],
buffer overflow vulnerability [+],
web [+],
security vulnerability [+],
code execution [+],
solaris vulnerability [+],
service vulnerability [+],
glassfish [+]
-
-
18:33
»
Packet Storm Security Advisories
Red Hat Security Advisory 2012-0139-01 - The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. Further information about these flaws can be found on the Oracle Java SE Critical Patch page, listed in the References section. All users of java-1.6.0-sun are advised to upgrade to these updated packages, which provide JDK and JRE 6 Update 31 and resolve these issues. All running instances of Sun Java must be restarted for the update to take effect.
-
-
8:00
»
Hack a Day
[Steven Dufresne] does a lot of tinkering with solar-powered applications, a hobby which can be very time consuming if done right. One process he carries out whenever building a solar installation is creating a sun chart to determine how much (or little) sun the target area will get. The process requires [Steven] to take elevation [...]
-
-
6:01
»
Hack a Day
We’re past the winter solstice and the days are getting longer, but that doesn’t mean we’re not sick of the sun setting around 5 in the afternoon. There is a way to get more sunlight through our windows – a heliostat. Lucky for us, [Gabriel] sent in his Open Source Sun Tracking / Heliostat project that [...]
-
-
15:54
»
Packet Storm Security Advisories
Red Hat Security Advisory 2011-1384-01 - The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. Further information about these flaws can be found on the Oracle Java SE Critical Patch page, listed in the References section.
-
15:54
»
Packet Storm Security Recent Files
Red Hat Security Advisory 2011-1384-01 - The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. Further information about these flaws can be found on the Oracle Java SE Critical Patch page, listed in the References section.
-
15:54
»
Packet Storm Security Misc. Files
Red Hat Security Advisory 2011-1384-01 - The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. Further information about these flaws can be found on the Oracle Java SE Critical Patch page, listed in the References section.
-
12:34
»
Packet Storm Security Exploits
This Metasploit module logs in to an GlassFish Server 3.1 (Open Source or Commercial) instance using a default credential, uploads, and executes commands via deploying a malicious WAR. On Glassfish 2.x, 3.0 and Sun Java System Application Server 9.x this module will try to bypass authentication instead by sending lowercase HTTP verbs.
-
12:34
»
Packet Storm Security Recent Files
This Metasploit module logs in to an GlassFish Server 3.1 (Open Source or Commercial) instance using a default credential, uploads, and executes commands via deploying a malicious WAR. On Glassfish 2.x, 3.0 and Sun Java System Application Server 9.x this module will try to bypass authentication instead by sending lowercase HTTP verbs.
-
12:34
»
Packet Storm Security Misc. Files
This Metasploit module logs in to an GlassFish Server 3.1 (Open Source or Commercial) instance using a default credential, uploads, and executes commands via deploying a malicious WAR. On Glassfish 2.x, 3.0 and Sun Java System Application Server 9.x this module will try to bypass authentication instead by sending lowercase HTTP verbs.
-
-
8:03
»
Packet Storm Security Exploits
Oracle Sun GlassFish Enterprise Server version 2.1.1 suffers from a cross site scripting vulnerability. Proof of concept code included.
-
-
5:30
»
Hack a Day
The sun is a great source of energy, however, efficiently collecting this energy can be hard to do. One thing that can improve the results of solar use is to actually track the sun’s movement. [fanman1981] hooked up his own homebrew solar tracker using some pretty clever techniques. For this hack he used two Harbor [...]
-
-
4:05
»
Hack a Day
Instructables user [flapke] has a Kobo eReader and wanted to add some solar cells to it in order to charge the battery for free. The modification is similar to others we have seen recently, though his work was done so well that it almost looks stock. He started out by sourcing a pair of solar panels [...]
-
-
17:47
»
Packet Storm Security Advisories
Red Hat Security Advisory 2011-0860-01 - The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. Further information about these flaws can be found on the "Oracle Java SE Critical Patch Update Advisory" page, listed in the References section. Various other issues were also addressed.
-
17:47
»
Packet Storm Security Recent Files
Red Hat Security Advisory 2011-0860-01 - The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. Further information about these flaws can be found on the "Oracle Java SE Critical Patch Update Advisory" page, listed in the References section. Various other issues were also addressed.
-
17:47
»
Packet Storm Security Misc. Files
Red Hat Security Advisory 2011-0860-01 - The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. Further information about these flaws can be found on the "Oracle Java SE Critical Patch Update Advisory" page, listed in the References section. Various other issues were also addressed.
-
-
12:00
»
Hack a Day
A few common components come together to make this interactive museum exhibit that teaches about the sun (translated). It uses three main physical components to pull this off. The first is a custom projection surface. It’s a hemisphere of the sun with a slice cut out of it. This is presumably coated with the paint you’d [...]
-
-
11:05
»
SecuriTeam
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun's Java Runtime Environment.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
18:21
»
SecuriTeam
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of the Sun Java Runtime.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
18:02
»
Packet Storm Security Recent Files
Security-Assessment.com discovered that is possible to successfully perform an HTTP Response Splitting attack against applications served by Sun Java System Web Server. The vulnerability can be exploited if user supplied input is used to generate the value of an HTTP header.
-
18:02
»
Packet Storm Security Exploits
Security-Assessment.com discovered that is possible to successfully perform an HTTP Response Splitting attack against applications served by Sun Java System Web Server. The vulnerability can be exploited if user supplied input is used to generate the value of an HTTP header.
-
-
21:01
»
Packet Storm Security Recent Files
Zero Day Initiative Advisory 10-202 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of the Sun Java Runtime. User interaction is required in that a target must visit a malicious page. The specific flaw exists within the com.sun.jnlp.BasicServiceImpl class. By abusing how Web Start retrieves security policies, an attacker can forge their own and force the removal of sandbox restrictions. Successful exploitation leads to code execution under the context of the user running the browser.
-
21:01
»
Packet Storm Security Advisories
Zero Day Initiative Advisory 10-202 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of the Sun Java Runtime. User interaction is required in that a target must visit a malicious page. The specific flaw exists within the com.sun.jnlp.BasicServiceImpl class. By abusing how Web Start retrieves security policies, an attacker can forge their own and force the removal of sandbox restrictions. Successful exploitation leads to code execution under the context of the user running the browser.
-
-
14:22
»
SecuriTeam
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun's Java Runtime Environment.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
14:02
»
SecuriTeam
This vulnerability allows remote attackers to violate security policies on vulnerable installations of Sun Java Runtime.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
20:32
»
SecuriTeam
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun's Java Runtime.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
20:27
»
SecuriTeam
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun Java Runtime.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
20:27
»
SecuriTeam
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun's Java Runtime.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
7:16
»
Hack a Day
[nmcclana] wrote out this very detailed instructible on building Mr. Burns, a sun burn alarm. Enter your skin type, sunscreen type, and UV levels for the day and Mr. Burns will let you know when it is time to go seek shelter or re-apply that sunscreen. Built on a Propeller platform, he’s using a blue [...]
-
-
23:56
»
SecuriTeam
A Buffer Overflow vulnerability was discovered in Sun Java JDK/JRE Unpack200.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
19:57
»
SecuriTeam
This vulnerability allows attackers to deny services on vulnerable installations of Sun Microsystems Directory Server.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
21:57
»
SecuriTeam
This vulnerability allows attackers to execute arbitrary code on vulnerable installations of Sun Microsystems Directory Service Manager.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
21:56
»
SecuriTeam
This vulnerability allows attackers to deny services on vulnerable installations of Sun Microsystems Directory Service Manager.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
7:25
»
Hack a Day
As we all know, a solar panel must be exposed to the most amount of sunlight possible to reach full efficiency. A solid mount limits the amount of time that the panel is fully exposed to direct sunlight. The solution is to build a pivoting mount that automates the process of aiming at the sun. [...]
-
-
10:42
»
Hack a Day
A new beta build of VirtualBox, Sun’s Oracle’s free x86 virtualization software, makes it possible to run Mac OS X as a guest operating system…no shenanigans or flaming hoops to jump through, just pop in the $30 retail Snow Leopard upgrade disc and go. This had previously only been possible with some awkward Hackintosh-style maneuvering, or [...]
-
1:00
»
Packet Storm Security Recent Files
Zero Day Initiative Advisory 10-074 - This vulnerability allows attackers to execute arbitrary code on vulnerable installations of Sun Microsystems Directory Service Manager. Authentication is not required to exploit this vulnerability. The specific flaw exists within Sun Directory Server's LDAP implementation and can be triggered via a malformed LDAP query to the service. When the service decodes the malformed query, the application will cause a buffer overflow which can lead to code execution under the context of the service.
-
1:00
»
Packet Storm Security Advisories
Zero Day Initiative Advisory 10-073 - This vulnerability allows attackers to deny services on vulnerable installations of Sun Microsystems Directory Service Manager. Authentication is not required to exploit this vulnerability. The specific flaw exists within Sun Directory Server's DSML-over-HTTP implementation and can be triggered via an HTTP POST request to the webserver that the application has bound to. When the service processes a search request with a malformed username, the application will dereference a null pointer causing any future queries made against the webserver to fail. This will lead to a denial of service against the affected service.
-
1:00
»
Packet Storm Security Advisories
Zero Day Initiative Advisory 10-074 - This vulnerability allows attackers to execute arbitrary code on vulnerable installations of Sun Microsystems Directory Service Manager. Authentication is not required to exploit this vulnerability. The specific flaw exists within Sun Directory Server's LDAP implementation and can be triggered via a malformed LDAP query to the service. When the service decodes the malformed query, the application will cause a buffer overflow which can lead to code execution under the context of the service.
-
12:03
»
Packet Storm Security Recent Files
Zero Day Initiative Advisory 10-052 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun's Java Runtime Environment. User interaction is required to exploit this vulnerability in that the target must visit a malicious page. The specific flaw exists within a function responsible for allocating objects in the com.sun.media.sound libraries. This function takes an integer parameter and adds a fixed amount to it before allocating from the heap. This can be exploited to gain arbitrary code execution by forcing a call to this allocator with a large enough integer parameter.
-
12:00
»
Packet Storm Security Advisories
Zero Day Initiative Advisory 10-052 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sun's Java Runtime Environment. User interaction is required to exploit this vulnerability in that the target must visit a malicious page. The specific flaw exists within a function responsible for allocating objects in the com.sun.media.sound libraries. This function takes an integer parameter and adds a fixed amount to it before allocating from the heap. This can be exploited to gain arbitrary code execution by forcing a call to this allocator with a large enough integer parameter.
-
-
22:00
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in Sun Java JDK/JRE, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by a sign-extension error when parsing the length of a resource in a Soundbank file and can be exploited to cause a heap-based buffer overflow. Successful exploitation may allow execution of arbitrary code. Sun Java JDK/JRE 1.6 Update 17 is affected.
-
22:00
»
Packet Storm Security Advisories
Secunia Research has discovered a vulnerability in Sun Java JDK/JRE, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by a sign-extension error when parsing the length of a resource name in a Soundbank file and can be exploited to cause a stack-based buffer overflow. Successful exploitation may allow execution of arbitrary code. Sun Java JDK/JRE 1.6 Update 17 is affected.
-
-
19:00
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-059 - Unspecified vulnerability in Guest Additions in Sun xVM VirtualBox 1.6.x and 2.0.x before 2.0.12, 2.1.x, and 2.2.x, and Sun VirtualBox before 3.0.10, allows guest OS users to cause a denial of service (memory consumption) on the guest OS via unknown vectors. Packages for 2008.0 are provided for Corporate Desktop 2008.0 customers. The updated packages have been patched to correct this issue.
-
19:00
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-059 - Unspecified vulnerability in Guest Additions in Sun xVM VirtualBox 1.6.x and 2.0.x before 2.0.12, 2.1.x, and 2.2.x, and Sun VirtualBox before 3.0.10, allows guest OS users to cause a denial of service (memory consumption) on the guest OS via unknown vectors. Packages for 2008.0 are provided for Corporate Desktop 2008.0 customers. The updated packages have been patched to correct this issue.