<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Hero &#187; Security</title>
	<atom:link href="http://sechero.com/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://sechero.com</link>
	<description>If it's about security, you heard it here first</description>
	<lastBuildDate>Mon, 12 Jul 2010 23:27:38 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>HP OpenView NNM ovalarm.exe CGI Accept-Language Stack Overflow Vulnerability</title>
		<link>http://sechero.com/hp-openview-nnm-ovalarm-exe-cgi-accept-language-stack-overflow-vulnerability/</link>
		<comments>http://sechero.com/hp-openview-nnm-ovalarm-exe-cgi-accept-language-stack-overflow-vulnerability/#comments</comments>
		<pubDate>Thu, 10 Dec 2009 06:31:06 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21028</guid>
		<description><![CDATA[Bugtraq: TPTI-09-12: HP OpenView NNM ovalarm.exe CGI Accept-Language Stack Overflow Vulnerability TPTI-09-12: HP OpenView NNM ovalarm.exe CGI Accept-Language Stack Overflow Vulnerability URL: http://www.securityfocus.com/archive/1/508355]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/508355">Bugtraq: TPTI-09-12: HP OpenView NNM ovalarm.exe CGI Accept-Language Stack Overflow Vulnerability</a></h1>
<p>TPTI-09-12: HP OpenView NNM ovalarm.exe CGI Accept-Language Stack Overflow Vulnerability
<p>URL: <a href="http://www.securityfocus.com/archive/1/508355">http://www.securityfocus.com/archive/1/508355</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/hp-openview-nnm-ovalarm-exe-cgi-accept-language-stack-overflow-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>HP OpenView NNM ovwebsnmpsrv.exe OVwSelection Stack Overflow Vulnerability</title>
		<link>http://sechero.com/hp-openview-nnm-ovwebsnmpsrv-exe-ovwselection-stack-overflow-vulnerability/</link>
		<comments>http://sechero.com/hp-openview-nnm-ovwebsnmpsrv-exe-ovwselection-stack-overflow-vulnerability/#comments</comments>
		<pubDate>Thu, 10 Dec 2009 06:31:06 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21029</guid>
		<description><![CDATA[Bugtraq: TPTI-09-14: HP OpenView NNM ovwebsnmpsrv.exe OVwSelection Stack Overflow Vulnerability TPTI-09-14: HP OpenView NNM ovwebsnmpsrv.exe OVwSelection Stack Overflow Vulnerability URL: http://www.securityfocus.com/archive/1/508357]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/508357">Bugtraq: TPTI-09-14: HP OpenView NNM ovwebsnmpsrv.exe OVwSelection Stack Overflow Vulnerability</a></h1>
<p>TPTI-09-14: HP OpenView NNM ovwebsnmpsrv.exe OVwSelection Stack Overflow Vulnerability
<p>URL: <a href="http://www.securityfocus.com/archive/1/508357">http://www.securityfocus.com/archive/1/508357</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/hp-openview-nnm-ovwebsnmpsrv-exe-ovwselection-stack-overflow-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Symantec Multiple Products VRTSweb.exe Remote Code Execution Vulnerability</title>
		<link>http://sechero.com/symantec-multiple-products-vrtsweb-exe-remote-code-execution-vulnerability/</link>
		<comments>http://sechero.com/symantec-multiple-products-vrtsweb-exe-remote-code-execution-vulnerability/#comments</comments>
		<pubDate>Thu, 10 Dec 2009 06:31:06 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21030</guid>
		<description><![CDATA[Bugtraq: ZDI-09-098: Symantec Multiple Products VRTSweb.exe Remote Code Execution Vulnerability ZDI-09-098: Symantec Multiple Products VRTSweb.exe Remote Code Execution Vulnerability URL: http://www.securityfocus.com/archive/1/508358]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/508358">Bugtraq: ZDI-09-098: Symantec Multiple Products VRTSweb.exe Remote Code Execution Vulnerability</a></h1>
<p>ZDI-09-098: Symantec Multiple Products VRTSweb.exe Remote Code Execution Vulnerability
<p>URL: <a href="http://www.securityfocus.com/archive/1/508358">http://www.securityfocus.com/archive/1/508358</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/symantec-multiple-products-vrtsweb-exe-remote-code-execution-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>HP OpenView NNM snmpviewer.exe CGI Host Header Stack Overflow Vulnerability</title>
		<link>http://sechero.com/hp-openview-nnm-snmpviewer-exe-cgi-host-header-stack-overflow-vulnerability/</link>
		<comments>http://sechero.com/hp-openview-nnm-snmpviewer-exe-cgi-host-header-stack-overflow-vulnerability/#comments</comments>
		<pubDate>Thu, 10 Dec 2009 06:31:05 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21027</guid>
		<description><![CDATA[Bugtraq: TPTI-09-13: HP OpenView NNM snmpviewer.exe CGI Host Header Stack Overflow Vulnerability TPTI-09-13: HP OpenView NNM snmpviewer.exe CGI Host Header Stack Overflow Vulnerability URL: http://www.securityfocus.com/archive/1/508356]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/508356">Bugtraq: TPTI-09-13: HP OpenView NNM snmpviewer.exe CGI Host Header Stack Overflow Vulnerability</a></h1>
<p>TPTI-09-13: HP OpenView NNM snmpviewer.exe CGI Host Header Stack Overflow Vulnerability
<p>URL: <a href="http://www.securityfocus.com/archive/1/508356">http://www.securityfocus.com/archive/1/508356</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/hp-openview-nnm-snmpviewer-exe-cgi-host-header-stack-overflow-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ffmpeg</title>
		<link>http://sechero.com/ffmpeg/</link>
		<comments>http://sechero.com/ffmpeg/#comments</comments>
		<pubDate>Sun, 06 Dec 2009 06:44:07 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21026</guid>
		<description><![CDATA[[ MDVSA-2009:297-1 ] ffmpeg Posted by security on Dec 05 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2009:297-1 http://www.mandriva.com/security/ _______________________________________________________________________ Package : ffmpeg Date : December 5, 2009 Affected: 2008.0 _______________________________________________________________________ Problem Description: Vulnerabilities have been&#8230; URL: http://seclists.org/fulldisclosure/2009/Dec/133]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Dec/133">[ MDVSA-2009:297-1 ] ffmpeg</a></h1>
<p>Posted by security on Dec 05</p>
<p> _______________________________________________________________________</p>
<p>Mandriva Linux Security Advisory                       MDVSA-2009:297-1</p>
<p><a href="http://www.mandriva.com/security/" rel="nofollow">http://www.mandriva.com/security/</a></p>
<p>_______________________________________________________________________</p>
<p>Package : ffmpeg</p>
<p>Date    : December 5, 2009</p>
<p>Affected: 2008.0</p>
<p>_______________________________________________________________________</p>
<p>Problem Description:</p>
<p>Vulnerabilities have been&#8230;
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Dec/133">http://seclists.org/fulldisclosure/2009/Dec/133</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/ffmpeg/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>out of box scanner</title>
		<link>http://sechero.com/out-of-box-scanner/</link>
		<comments>http://sechero.com/out-of-box-scanner/#comments</comments>
		<pubDate>Sat, 05 Dec 2009 19:44:26 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21025</guid>
		<description><![CDATA[Re: out of box scanner Posted by Nathan Grandbois on Dec 04 John Bennett wrote: John, You might want to take a look at the WASC list here: http://projects.webappsec.org/Web-Application-Security-Scanner-List The thread is still under discussion on the webappsec mailing list. _nathan URL: http://seclists.org/pen-test/2009/Dec/5]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/pen-test/2009/Dec/5">Re: out of box scanner</a></h1>
<p>Posted by Nathan Grandbois on Dec 04</p>
<p>John Bennett wrote:</p>
<p>John,</p>
<p>You might want to take a look at the WASC list here:</p>
<p><a href="http://projects.webappsec.org/Web-Application-Security-Scanner-List" rel="nofollow">http://projects.webappsec.org/Web-Application-Security-Scanner-List</a></p>
<p>The thread is still under discussion on the webappsec mailing list.</p>
<p>_nathan
<p>URL: <a href="http://seclists.org/pen-test/2009/Dec/5">http://seclists.org/pen-test/2009/Dec/5</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/out-of-box-scanner/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Autodesk Maya Script Nodes Arbitrary Command Execution</title>
		<link>http://sechero.com/autodesk-maya-script-nodes-arbitrary-command-execution/</link>
		<comments>http://sechero.com/autodesk-maya-script-nodes-arbitrary-command-execution/#comments</comments>
		<pubDate>Mon, 23 Nov 2009 22:24:45 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21005</guid>
		<description><![CDATA[Bugtraq: CORE-2009-0910: Autodesk Maya Script Nodes Arbitrary Command Execution CORE-2009-0910: Autodesk Maya Script Nodes Arbitrary Command Execution URL: http://www.securityfocus.com/archive/1/508013]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/508013">Bugtraq: CORE-2009-0910: Autodesk Maya Script Nodes Arbitrary Command Execution</a></h1>
<p>CORE-2009-0910: Autodesk Maya Script Nodes Arbitrary Command Execution
<p>URL: <a href="http://www.securityfocus.com/archive/1/508013">http://www.securityfocus.com/archive/1/508013</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/autodesk-maya-script-nodes-arbitrary-command-execution/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DoS vulnerability in Internet Explorer</title>
		<link>http://sechero.com/dos-vulnerability-in-internet-explorer/</link>
		<comments>http://sechero.com/dos-vulnerability-in-internet-explorer/#comments</comments>
		<pubDate>Tue, 10 Nov 2009 17:57:00 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20991</guid>
		<description><![CDATA[Bugtraq: Re: DoS vulnerability in Internet Explorer Re: DoS vulnerability in Internet Explorer URL: http://www.securityfocus.com/archive/1/507759]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/507759">Bugtraq: Re: DoS vulnerability in Internet Explorer</a></h1>
<p>Re: DoS vulnerability in Internet Explorer
<p>URL: <a href="http://www.securityfocus.com/archive/1/507759">http://www.securityfocus.com/archive/1/507759</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/dos-vulnerability-in-internet-explorer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Dark side of bookmarks</title>
		<link>http://sechero.com/dark-side-of-bookmarks/</link>
		<comments>http://sechero.com/dark-side-of-bookmarks/#comments</comments>
		<pubDate>Sun, 01 Nov 2009 18:44:54 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20988</guid>
		<description><![CDATA[Dark side of bookmarks Posted by MustLive on Nov 01 Hello participants of Full-Disclosure! After my articles about different attacks via redirectors &#8211; Redirectors: the phantom menace (http://websecurity.com.ua/3495/) and Attacks via closed redirectors (http://websecurity.com.ua/3531/), here is my new article. This time about attacks via bookmarks. In article Dark side of bookmarks (http://websecurity.com.ua/3643/) I&#8217;ll tell you [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Nov/0">Dark side of bookmarks</a></h1>
<p>Posted by MustLive on Nov 01</p>
<p>Hello participants of Full-Disclosure!</p>
<p>After my articles about different attacks via redirectors &#8211; Redirectors: the </p>
<p>phantom menace (<a href="http://websecurity.com.ua/3495/" rel="nofollow">http://websecurity.com.ua/3495/</a>) and Attacks via closed </p>
<p>redirectors (<a href="http://websecurity.com.ua/3531/" rel="nofollow">http://websecurity.com.ua/3531/</a>), here is my new article. This </p>
<p>time about attacks via bookmarks. In article Dark side of bookmarks </p>
<p>(<a href="http://websecurity.com.ua/3643/" rel="nofollow">http://websecurity.com.ua/3643/</a>) I&#8217;ll tell you about risks of bookmarks in </p>
<p>browsers.</p>
<p>There are possible next&#8230;
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Nov/0">http://seclists.org/fulldisclosure/2009/Nov/0</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/dark-side-of-bookmarks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ARM Expects Mobile Phones with Dual-Core Processors Next Year.</title>
		<link>http://sechero.com/arm-expects-mobile-phones-with-dual-core-processors-next-year/</link>
		<comments>http://sechero.com/arm-expects-mobile-phones-with-dual-core-processors-next-year/#comments</comments>
		<pubDate>Sun, 01 Nov 2009 04:44:51 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[PHP]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20987</guid>
		<description><![CDATA[ARM Expects Mobile Phones with Dual-Core Processors Next Year. Dual-core central processing units (CPUs) were considered a breakthrough in the personal computer industry back in 2005. In 2010, dual-core chips, albeit powered by processors with different micro-architecture, are set to enter the market of mobile phones, according to ARM, a leading developer of processors for [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=33626">ARM Expects Mobile Phones with Dual-Core Processors Next Year.</a></h1>
<p>Dual-core central processing units (CPUs) were considered a breakthrough in the personal computer industry back in 2005. In 2010, dual-core chips, albeit powered by processors with different micro-architecture, are set to enter the market of mobile phones, according to ARM, a leading developer of processors for portable electronics.</p>
<p>&#8220;We don¡¦t need silly GHz speeds. With our dual-core A9, we can get two times the performance, without the speed draining the battery, so by the time you get home your phone is dead,¡¨ said Rob Coombs, director of mobile solutions for ARM, in an interview with TechRadar web-site.</p>
<p>Mr. Coombs added that ARM hopes that actual implementers would introduce dual-core processors for mobile phones sometime in 2010, but still, delays to 2011 were possible.
<p>URL: <a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=33626">http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=33626</a></p>
<p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/arm-expects-mobile-phones-with-dual-core-processors-next-year/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>/proc filesystem allows bypassing directory permissions on</title>
		<link>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on-2/</link>
		<comments>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on-2/#comments</comments>
		<pubDate>Fri, 30 Oct 2009 14:24:23 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20985</guid>
		<description><![CDATA[Bugtraq: Re: /proc filesystem allows bypassing directory permissions on Re: /proc filesystem allows bypassing directory permissions on URL: http://www.securityfocus.com/archive/1/507584]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/507584">Bugtraq: Re: /proc filesystem allows bypassing directory permissions on</a></h1>
<p>Re: /proc filesystem allows bypassing directory permissions on
<p>URL: <a href="http://www.securityfocus.com/archive/1/507584">http://www.securityfocus.com/archive/1/507584</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>/proc filesystem allows bypassing directory permissions on</title>
		<link>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on/</link>
		<comments>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on/#comments</comments>
		<pubDate>Thu, 29 Oct 2009 23:02:02 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20984</guid>
		<description><![CDATA[Bugtraq: Re: /proc filesystem allows bypassing directory permissions on Re: /proc filesystem allows bypassing directory permissions on URL: http://www.securityfocus.com/archive/1/507584]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/507584">Bugtraq: Re: /proc filesystem allows bypassing directory permissions on</a></h1>
<p>Re: /proc filesystem allows bypassing directory permissions on
<p>URL: <a href="http://www.securityfocus.com/archive/1/507584">http://www.securityfocus.com/archive/1/507584</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>/proc filesystem allows bypassing directory permissions on Linux</title>
		<link>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on-linux/</link>
		<comments>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on-linux/#comments</comments>
		<pubDate>Tue, 27 Oct 2009 05:50:05 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Linux]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20983</guid>
		<description><![CDATA[Bugtraq: Re: /proc filesystem allows bypassing directory permissions on Linux Re: /proc filesystem allows bypassing directory permissions on Linux URL: http://www.securityfocus.com/archive/1/507473]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/507473">Bugtraq: Re: /proc filesystem allows bypassing directory permissions on Linux</a></h1>
<p>Re: /proc filesystem allows bypassing directory permissions on Linux
<p>URL: <a href="http://www.securityfocus.com/archive/1/507473">http://www.securityfocus.com/archive/1/507473</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/proc-filesystem-allows-bypassing-directory-permissions-on-linux/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>2910 (kernel)</title>
		<link>http://sechero.com/2910-kernel/</link>
		<comments>http://sechero.com/2910-kernel/#comments</comments>
		<pubDate>Thu, 22 Oct 2009 01:45:15 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Linux]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20982</guid>
		<description><![CDATA[CVE-2009-2910 (kernel) arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.31.4 on the x86_64 platform does not clear certain kernel registers before a return to user mode, which allows local users to read register values from an earlier process by switching an ia32 process to 64-bit mode. URL: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2910]]></description>
			<content:encoded><![CDATA[<h1><a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2910">CVE-2009-2910 (kernel)</a></h1>
<p>arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.31.4 on the x86_64 platform does not clear certain kernel registers before a return to user mode, which allows local users to read register values from an earlier process by switching an ia32 process to 64-bit mode.
<p>URL: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2910">http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2910</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/2910-kernel/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>insecure elements in https protected pages</title>
		<link>http://sechero.com/insecure-elements-in-https-protected-pages/</link>
		<comments>http://sechero.com/insecure-elements-in-https-protected-pages/#comments</comments>
		<pubDate>Mon, 19 Oct 2009 01:45:25 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20977</guid>
		<description><![CDATA[insecure elements in https protected pages Posted by Mohammad Hosein on Oct 18 in a certain web application e.g gmail there are times the whole communication is secured by ssl and sometimes &#34;there are insecure elements&#34; that raise questions . i&#8217;m not a web professional . how to find these insecure elements ? and how [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Oct/251">insecure elements in https protected pages</a></h1>
<p>Posted by Mohammad Hosein on Oct 18</p>
<p>in a certain web application e.g gmail there are times the whole</p>
<p>communication is secured by ssl and sometimes &quot;there are insecure elements&quot;</p>
<p>that raise questions . i&#8217;m not a web professional . how to find these</p>
<p>insecure elements ? and how to evaluate if these elements are the results of</p>
<p>a successful man in the middle attack or not ?</p>
<p>regards
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Oct/251">http://seclists.org/fulldisclosure/2009/Oct/251</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/insecure-elements-in-https-protected-pages/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

