Bugtraq: by date

153 messages starting Nov 30 96 and ending Dec 25 96
Date index | Thread index | Author index


Saturday, 30 November

Vulnrability in test-cgi... Apropos of Nothing
HP Bug of the Week! Aleph One

Sunday, 01 December

denial of service attack on login NuNO
Re: Vulnrability in test-cgi... Roger Espel Llima
Little feature/bug in RedHat Linux Antti Andreimann

Monday, 02 December

Users can modify routing in AIX 4.1 Dave Roberts
Re: Irix: more suid fun/exploits Jaechul Choe
Re: Users can modify routing in AIX 4.1 Troy Bollinger
Re: Vulnrability in test-cgi... Jesus Altuve
Irix: suid_exec hole Yuri Volobuev
Re: Vulnrability in test-cgi... Joe Zbiciak

Tuesday, 03 December

/bin/ksh sparc code Kichang Yang
AltaVista Firewall for UNIX Sarah Keating
Re: Vulnerability in test-cgi Ed Arnold
Re: /bin/ksh sparc code Aaron Bornstein
sendmail 8.8.3 and DefaultUser and RunAsUser Michael Douglass
Re: sendmail 8.8.3 and DefaultUser and RunAsUser Pauline van Winsen - Uniq Professional Services
Update: Pine causing Solaris/x86 to hang Todd Vierling
Re: Vulnerability in test-cgi Joe Zbiciak

Wednesday, 04 December

sunos rlogin Roger Espel Llima
Re: sunos rlogin Roger Espel Llima
Re: ANNOUNCE: INN 1.5 Matt Power
Re: Irix: suid_exec hole Dean Gaudet

Thursday, 05 December

Re: sunos rlogin Casper Dik
NFS/mountd minor bug Alan Cox
Irix NFS fun Foowan
Re: NFS/mountd minor bug Brian Mitchell
Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Kevin L Prigge
Re: ANNOUNCE: INN 1.5 Dave Hayes
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul B. Henson
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Jody L. Baze
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Terrell Thacker
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Kevin L Prigge
Re: Irix: suid_exec hole Kari E. Hurtta
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul B. Henson
SGI Security Advisory 19961201-01-PX - Desktop searchbook Program SGI Security Coordinator
suid_exec problem clarification Yuri Volobuev

Friday, 06 December

Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul Ashton
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Nikolai Matyushenko
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Casper Dik
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul B. Henson
New INN security problems Chris Timmons
suid_exec Javier Romeu
CIAC Bulletin H-10: HP-UX Security Vulnerabilities David Crawford
Re: (Fwd) RE: [NTSEC] Delete permissions on files David LeBlanc

Saturday, 07 December

Re: (Fwd) RE: [NTSEC] Delete permissions on files Ken Cross

Sunday, 08 December

Re: Weakness in some linux versions of adduser. Alan Brown
Re: Weakness in some linux versions of adduser. Adam Powers
Re: Weakness in some linux versions of adduser. Scriptors of DOOM

Monday, 09 December

the HP Bug of the Week! Aleph One
Other Folks Scripts Aleph One
Irix: datman hole, errata Yuri Volobuev

Tuesday, 10 December

Re: L0pht Advisory: modstat Eivind Eklund
Re: denial of service attack on login Bettina Fink
Re: L0pht Advisory: modstat Jason R. Mastaler
NT IIS 2.0 Bug -- Fix available. Russ
FreeBSD Security Advisory: FreeBSD-SA-96:18.lpr (REVISED) FreeBSD Security Officer
LINUX:/var/log/messages world readable Dave G.

Wednesday, 11 December

Re: L0pht Advisory: modstat J Wunsch
CIAC Bulletin H-12: IBM AIX(r) 'SYN Flood' and 'Ping o' Death' David Crawford
sendmail 8.8.4 and initgroups Michael Douglass
sendmail 8.8.4/initgroups--the way it ought to be Michael Douglass
CIAC Bulletin H-13: IBM AIX(r) Security Vulnerabilities David Crawford
Re: CIAC Bulletin H-13: IBM AIX(r) Security Vulnerabilities d
Amended Bulletin (#137) Mark Graff
Security Advisory: HTTP/CGI Script Exploit Josh Richards

Thursday, 12 December

More test-cgi Erik M Pennebaker
[nph]test-cgi *Hobbit*

Friday, 13 December

Re: More test-cgi M Shariful Anam
Re: sendmail 8.8.4 and initgroups (fwd) Eric Allman
Re: sendmail 8.8.4 and initgroups (fwd) Eric Allman

Saturday, 14 December

vulnerability in new pw suite Julian Assange
pw account suite patch typo Julian Assange
Exploit for crontab bug (FreeBSD 2.1.0). Leshka Zakharoff
Linux: exploit for killmouse. Bo
Re: Exploit for crontab bug (FreeBSD 2.1.0). Theo de Raadt
Re: Exploit for crontab bug (FreeBSD 2.1.0). Jake Ott
Re: Linux: exploit for killmouse. Joe Zbiciak

Sunday, 15 December

vixie-crontab for redhat linux Dave G.

Monday, 16 December

Re: vixie-crontab for redhat linux Erik Troan
Re: [nph]test-cgi Laurent FACQ
Irix: scanners hole Yuri Volobuev
scanf overflow David Sacerdote

Tuesday, 17 December

Re: Linux: killmouse/doom Bo
Re: Vulnerability in test-cgi Evgene Ilyine
vixie cron intel BSD exploit code Evgene Ilyine
FreeBSD Security Advisory: FreeBSD-SA-96:20.stack-overflow FreeBSD Security Officer
Possible Denial of Service: SSH Sean B. Hamor
ANNOUNCE: INN 1.5.1 James Brister
INW FTP server security hole David Gersic

Wednesday, 18 December

Re: Possible Denial of Service: SSH Paul Wouters
Re: Possible Denial of Service: SSH Toomas Soome
Re: Possible Denial of Service: SSH Jim Dennis
Re: Possible Denial of Service: SSH Jim Dennis
Re: Possible Denial of Service: SSH Sven Gestegard
Exploit for ppp bug (FreeBSD 2.1.0). Leshka Zakharoff

Thursday, 19 December

CIAC Bulletin H-17: cron/crontab Buffer Overrun Vulnerabilities David Crawford
NT vulnerable to attack on CPU Aleph One
CERT/AUCERT Mycroft
Re: CERT/AUCERT itudps
Re: CERT/AUCERT Aleph One
Re: CERT/AUCERT Theo de Raadt
CERT Bashing, etc Aleph One
Re: CERT/AUCERT Yuri Volobuev
Re: CERT/AUCERT Tung-Hui Hu

Friday, 20 December

TCP bug on old Solaris box ? Gilles Soulet
Solaris 2.5 x86 aspppd (semi-exploitable-hole) Thamer Al-Herbish
Slow vendor response Alan Cox
CERT, CIAC, etc. and unethical practices Thamer Al-Herbish
ANNOUNCE: Crack v5.0a available... Alec Muffett
Security Survey Aleph One

Saturday, 21 December

Re: CERT, CIAC, etc. and unethical practices d
Re: TCP bug on old Solaris box ? Nathan Lawson

Sunday, 22 December

Buffer overflow in Linux's login program Joe Zbiciak
Re: CERT, CIAC, etc. unethical practices Apropos of Nothing
Re: CERT, CIAC, etc. and unethical practices Chris Lavin
Re: CERT, CIAC, etc. and unethical practices Joshua Daymont
Re: CERT, CIAC, etc. unethical practices d
Re: CERT, CIAC, etc. unethical practices Steve \
Re: CERT, CIAC, etc. unethical practices Theo de Raadt
Security vulnerability in CERN httpd access protection Christopher Fraser
Re: Linux login buffer overflow Dave G.
Re: CERT, CIAC, etc. and unethical practices Catherine Allen
Bashing response teams Gene Spafford
Re: CERT, CIAC, etc. unethical practices Mike Kienenberger
Re: Security vulnerability in CERN httpd access protection Hallam-Baker
Re: Bashing response teams Alfred Huger

Monday, 23 December

Re: mktemp() and friends Theo de Raadt
Re: mktemp() and friends Darren Reed
Re: mktemp() and friends Uriel Maimon
Re: mktemp() and friends Theo de Raadt
Re: mktemp() and friends Darren Reed
Re: mktemp() and friends Theo de Raadt
Re: mktemp() and friends Benedikt Stockebrand
Holes in default cron jobs David Sacerdote

Tuesday, 24 December

cron jobs, vendors, /tmp madness, et al. Dave G.
Re: mktemp() and friends Steve \
Re: mktemp() and friends Casper Dik
Re: mktemp() and friends Theo de Raadt
Re: mktemp() and friends D. J. Bernstein
Re: mktemp() and friends SGI Security Coordinator
Problem with default slackware crontabs Jon Snyder
jj cgi Aleph One
Re: Problem with default slackware crontabs Jared Mauch
Re: Problem with default slackware crontabs, /tmp symlinks Jon Snyder
Re: Problem with default slackware crontabs, /tmp symlinks Marc Slemko
Re: jj.c Dave G.

Wednesday, 25 December

Another buggy root cron job Steve Reid
FALSE ALARM: Re: Another buggy root cron job Steve Reid
Re: Problem with default slackware crontabs Andi Gutmans
Re: FALSE ALARM: Re: Another buggy root cron job Bruce Evans
Temporary Files (was Re: mktemp() and friends) Benedikt Stockebrand
Re: jj.c der Mouse