Bugtraq: by author

150 messages starting Oct 25 97 and ending Oct 21 97
Date index | Thread index | Author index


Alain Renaud

Re: IRIX /var/inst/patchbase Alain Renaud (Oct 25)

Alan Cox

IE4 and channels Alan Cox (Oct 02)
Vulnerability in metamail Alan Cox (Oct 24)

Aleph One

LPRng security Aleph One (Oct 20)
Re: Huge security holes in Microsoft FP98 server extensions for Aleph One (Oct 11)
SNMP Insecurity Aleph One (Oct 08)
rlogin authentication bug Aleph One (Oct 01)
HP-UX tcp_random_seq Aleph One (Oct 06)
Possible SERIOUS bug in open()? Aleph One (Oct 23)
web.sql vulnerability Aleph One (Oct 03)
Sec. Bulletin for mediainit(1) in HP-UX 9.X and 10.X Aleph One (Oct 02)
Re: ISS Security Alert Aleph One (Oct 22)
NP-complete solution given is exponential Aleph One (Oct 02)
Re: SNI-20: Telnetd tgetent vulnerability Aleph One (Oct 22)
FreeBSD Security Advisory: FreeBSD-SA-97:05.open Aleph One (Oct 29)
CERT Vendor-Initiated Bulletin VB-97.11 - NEC Corp. Aleph One (Oct 14)
Re: Possible SERIOUS bug in open()? Aleph One (Oct 23)
xc Aleph One (Oct 03)
Security Vulnerability in CDE on HP-UX 10.0[1,2,3] Aleph One (Oct 29)
Security Hole in Explorer 4.0 Aleph One (Oct 17)
Sun Security Bulletin #00157 Aleph One (Oct 28)
rlogin authentication bug Aleph One (Oct 01)
Majordomo 1.94.4 released -- SECURITY FIXES Aleph One (Oct 03)
Run, RunOnce and Uninstall Registry Keys Vulnerability Aleph One (Oct 16)
Re: NP-completeness algorithm: errata Aleph One (Oct 02)
Security Bulletin for telnet services in HP-UX rel. 10.30 Aleph One (Oct 01)
CERT Vendor-Initiated Bulletin VB-97.12 - opengroup Aleph One (Oct 27)
Sun Security Bulletin #00158 Aleph One (Oct 28)
Jabadoo Security Hack Aleph One (Oct 17)
NT Domain Authentication Protocol - draft Aleph One (Oct 02)

Andre L. Dos Santos

Another way to exploit local classes in Java Andre L. Dos Santos (Oct 08)

Andrew Brown

Re: Security flaws in Yahoo Mail Andrew Brown (Oct 14)

Andrew Reynhout

Re: Remotely kill Solaris syslogd Andrew Reynhout (Oct 21)
Oops: Re: Remotely kill Solaris syslogd Andrew Reynhout (Oct 21)

andrew shieh

Security flaws in Yahoo Mail andrew shieh (Oct 12)

Ben

Re: `smurf' multi-broadcast icmp attack Ben (Oct 13)

Bennett Samowich

Possible weakness in LPD protocol Bennett Samowich (Oct 02)

Bill Paul

Re: HP Laserjet 4M Plus DirectJet Problem Bill Paul (Oct 05)

Brad Powell

Re: `smurf' multi-broadcast icmp attack Brad Powell (Oct 16)

Brett Lymn

Re: Possible weakness in LPD protocol Brett Lymn (Oct 08)

Brian Tao

[RISKS DIGEST 19.40] Possible breakthrough in NP-completeness Brian Tao (Oct 01)

bryan berg

Vulnerability in PHP Example Logging Scripts bryan berg (Oct 19)
Followup to PHP bug bryan berg (Oct 19)

Bst Perez Companc

Re: WinNT syscalls insecurity Bst Perez Companc (Oct 19)

Casper Dik

Re: L0pht Advisory: IMAP4rev1 imapd server Casper Dik (Oct 09)
Re: Solaris 2.6 and sockets Casper Dik (Oct 06)
Re: HP-UX tcp_random_seq Casper Dik (Oct 07)

Charles M. Hannum

Cute SPARC CPU bug Charles M. Hannum (Oct 24)
Re: Cute SPARC CPU bug Charles M. Hannum (Oct 24)
More info on SPARC CPU bug Charles M. Hannum (Oct 24)

Christopher Masto

Re: Possible weakness in LPD protocol Christopher Masto (Oct 03)

Christopher M. Conway

Re: Majordomo and EXPN Christopher M. Conway (Oct 22)

Chris Wilson

Re: remotely kill solaris syslogd Chris Wilson (Oct 21)

Craig A. Huegen

Re: `smurf' multi-broadcast icmp attack Craig A. Huegen (Oct 13)

Darren Reed

Re: HP Laserjet 4M Plus DirectJet Problem Darren Reed (Oct 04)

David LeBlanc

Update - Seattle Lab Slmail v2.5 for NT vulnerable David LeBlanc (Oct 16)
Re: DOS PC FTP SERVER David LeBlanc (Oct 13)
Re: ISS Security Alert David LeBlanc (Oct 23)
Alert Seattle Lab Sendmail v2.5 for NT vulnerable David LeBlanc (Oct 14)
Re: HP Laserjet 4M Plus DirectJet Problem David LeBlanc (Oct 05)
Re: WinNT syscalls insecurity David LeBlanc (Oct 19)

der Mouse

Re: TCPwrappers race condition der Mouse (Oct 02)
Re: Vulnerability in metamail der Mouse (Oct 25)
Re: TCPwrappers race condition der Mouse (Oct 05)

Dmitry Kohmanyuk Дмитрий Кохманюк

Re: Cute SPARC CPU bug Dmitry Kohmanyuk Дмитрий Кохманюк (Oct 24)

Doug Hughes

Re: Possible weakness in LPD protocol Doug Hughes (Oct 05)

Edsel Adap

Re: Solaris 2.6 and sockets Edsel Adap (Oct 06)

Efrain Torres Mejia

DOS PC FTP SERVER Efrain Torres Mejia (Oct 11)

Eivind Eklund

Re: Possible weakness in LPD protocol Eivind Eklund (Oct 03)
Re: Solaris 2.6 and sockets Eivind Eklund (Oct 12)

ers () VNET IBM COM

IBM-ERS Security Vulnerability Alert: The AIX piodmgrsu command ers () VNET IBM COM (Oct 29)
IBM-ERS Security Vulnerability Alert: Buffer overflow and ers () VNET IBM COM (Oct 29)
IBM-ERS Security Vulnerability Alert: The AIX ftp client ers () VNET IBM COM (Oct 29)
IBM-ERS Security Vulnerability Alert: Buffer overflows in the ers () VNET IBM COM (Oct 28)

Gustavo A. Lozano

Re: [seg-l] Passwords en Cisco (fwd) Gustavo A. Lozano (Oct 31)

Howie

Sun Security Bulletin #00155 (fwd) Howie (Oct 28)
Sun Security Bulletin #00156 (fwd) Howie (Oct 28)

hyped

broadcast ip scanning script hyped (Oct 13)

James Ponder

Majordomo and EXPN James Ponder (Oct 22)

Jan Wedekind

Re: wwwcount remote exploit (@ Solaris) Jan Wedekind (Oct 17)

Jaroslav Benkovsky

Re: Security flaw in Count.cgi (wwwcount) Jaroslav Benkovsky (Oct 13)

Jason R Mastaler

Re: remotely kill solaris syslogd Jason R Mastaler (Oct 21)

Jeremy Fischer

DUnix 4.x: way to fix tcp/ip sequence predictability (fwd) Jeremy Fischer (Oct 04)

Jimbo Bahooli

smurf.c ported to freebsd and friends Jimbo Bahooli (Oct 13)

John Bashinski

Re: underestimating crackers John Bashinski (Oct 02)
Notice: serious security problem in Cisco PPP/CHAP John Bashinski (Oct 01)

John McDonald

Re: Redir games with ARP and ICMP John McDonald (Oct 24)

John W. Temples

Re: TCPwrappers race condition John W. Temples (Oct 03)

Jonathan H. Pickard

Re: FW: Apache Fix Jonathan H. Pickard (Oct 30)

Jon Cargille

IE4 and channels Jon Cargille (Oct 02)

Jon Lewis

Re: `smurf' multi-broadcast icmp attack Jon Lewis (Oct 16)

Joseph_K

BSDI termcap exploit Joseph_K (Oct 22)

Kev

Re: Vulnerability in metamail Kev (Oct 25)

Klaus Steding-Jessen

HP Laserjet 4M Plus DirectJet Problem Klaus Steding-Jessen (Oct 04)

Kragen Sitaker

Re: L0pht Advisory: IMAP4rev1 imapd server Kragen Sitaker (Oct 09)

KSR[T]

KSR[T] Advisory #004: printfilter / groff / lpd KSR[T] (Oct 25)
KSR[T] Advisory #3: updatedb / crontabs KSR[T] (Oct 06)

Ladislav Bukvicka

BSDI xterm_color/kterm exploit Ladislav Bukvicka (Oct 22)

lb

Responses to syslogd killing lb (Oct 21)

lb - STAFF

Remotely kill Solaris syslogd lb - STAFF (Oct 21)

lee () SWIFTMAIL COM

Re: HP Laserjet 4M Plus DirectJet Problem lee () SWIFTMAIL COM (Oct 13)

Lionel Cons

X Security: a summary Lionel Cons (Oct 07)

Lutz Donnerhacke

Security flaw in PGPverify of INN Lutz Donnerhacke (Oct 09)

Marc Slemko

Huge security holes in Microsoft FP98 server extensions for Apache Marc Slemko (Oct 11)
Re: Security flaws in Yahoo Mail Marc Slemko (Oct 13)
_very_ poor ISN generation on Ascend MAX (fwd) Marc Slemko (Oct 11)
Re: L0pht Advisory: IMAP4rev1 imapd server Marc Slemko (Oct 08)

Mark E. Mallett

Re: Possible SERIOUS bug in open()? Mark E. Mallett (Oct 24)
Re: Possible SERIOUS bug in open()? Mark E. Mallett (Oct 25)

Miguel Angel Rodriguez Jodar

Re: IBM-ERS Security Vulnerability Alert: The AIX ftp client Miguel Angel Rodriguez Jodar (Oct 30)

Mike Kienenberger

a bug in IRIX open() as well [was Re: Possible SERIOUS bug in Mike Kienenberger (Oct 24)

Nicolai E M Plum

Re: TCPwrappers race condition Nicolai E M Plum (Oct 03)

Nicolas Dubee

wwwcount remote exploit Nicolas Dubee (Oct 16)

Oliver Friedrichs

Re: Possible weakness in LPD protocol Oliver Friedrichs (Oct 03)
SNI-19:BSD lpd vulnerability Oliver Friedrichs (Oct 02)

Paul Tatarsky

Re: remotely kill solaris syslogd Paul Tatarsky (Oct 23)
IRIX /var/inst/patchbase Paul Tatarsky (Oct 23)

Peter Simons

Re: Security flaw in PGPverify of INN Peter Simons (Oct 14)

Phillip Hallam-Baker

Re: IE4 and channels Phillip Hallam-Baker (Oct 02)

Phillip R. Jaenke

Flaw in DNS Phillip R. Jaenke (Oct 06)

Raymond Dijkxhoorn

SECURITY: metamail update (fwd) Raymond Dijkxhoorn (Oct 25)

Razvan Dragomirescu

Security flaw in Count.cgi (wwwcount) Razvan Dragomirescu (Oct 10)

Roger Espel Llima

Re: WinNT syscalls insecurity Roger Espel Llima (Oct 18)

Runar Jensen

Malicious Linux modules Runar Jensen (Oct 08)

Savochkin Andrey Vladimirovich

Re: SECURITY: groff, rhs-printfilters, tetex, metamail fixes Savochkin Andrey Vladimirovich (Oct 25)

Secure Networks Inc.

SNI-20: Telnetd tgetent vulnerability Secure Networks Inc. (Oct 21)
SNI-19: BSD lpd vulnerabilities (UPDATE) Secure Networks Inc. (Oct 21)

Solar Designer

Re: WinNT syscalls insecurity Solar Designer (Oct 21)
WinNT syscalls insecurity Solar Designer (Oct 19)

T. Freak

`smurf' multi-broadcast icmp attack T. Freak (Oct 12)

Thamer Al-Herbish

Re: Solaris 2.6 and sockets Thamer Al-Herbish (Oct 05)
Re: TCPwrappers race condition Thamer Al-Herbish (Oct 05)
TCPwrappers race condition Thamer Al-Herbish (Sep 28)

Theo de Raadt

Re: SNI-20: Telnetd tgetent vulnerability Theo de Raadt (Oct 21)
Re: Solaris 2.6 and sockets Theo de Raadt (Oct 04)
Re: Possible SERIOUS bug in open()? Theo de Raadt (Oct 24)
Re: Possible SERIOUS bug in open()? Theo de Raadt (Oct 24)

Therapy?

Re: `smurf' multi-broadcast icmp attack Therapy? (Oct 16)

Thomas Roessler

Re: Possible weakness in LPD protocol Thomas Roessler (Oct 02)

thoth () PURPLEFROG COM

Re: msql access control thoth () PURPLEFROG COM (Sep 29)

Tim Newsham

underestimating crackers Tim Newsham (Oct 01)
Re: Possible SERIOUS bug in open()? Tim Newsham (Oct 25)

VaX#n8

computer immunology VaX#n8 (Oct 17)

Warner Losh

Re: Possible weakness in LPD protocol Warner Losh (Oct 03)

We got Food - Fuel - Ice-cold Beer - and X.509 certificates

L0pht Advisory: IMAP4rev1 imapd server We got Food - Fuel - Ice-cold Beer - and X.509 certificates (Oct 08)

Wietse Venema

Re: TCPwrappers race condition Wietse Venema (Oct 03)
Re: TCPwrappers race condition Wietse Venema (Oct 03)

Wojciech Tryc

Solaris 2.6 and sockets Wojciech Tryc (Oct 03)

X-Force

ISS Security Alert X-Force (Oct 22)

Zack Weinberg

Re: Responses to syslogd killing Zack Weinberg (Oct 21)