Bugtraq: by date

357 messages starting Feb 07 00 and ending Mar 31 00
Date index | Thread index | Author index


Monday, 07 February

Fwd: ircii-4.4 buffer overflow bladi

Tuesday, 29 February

Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Brett Lymn
Re: W2K & ~25000+ temp files = crash + corruption? Robert M. Stockmann
Re: EZ Shopper 3.0 shopping cart CGI remote command execution Marc
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow H D Moore
Addendum to Firewall-1 FTP Server Vulnerability Paul Cardon
Re: Serv-U FTP-Server v2.4a showing real path Ben Greenbaum
Re: Serv-U FTP-Server v2.4a showing real path Signal 11
Re: All the recent SQL vulnerabilities Signal 11
Re: All the recent SQL vulnerabilities Keyser Soze
Re: SSH & xauth Peter Wemm
Re: Disk (over)quota in Windows 2000 Ian Turner

Wednesday, 01 March

Re: Disk (over)quota in Windows 2000 Mikael Olsson
Re: How the password could be recover using FTP Explorer'sregistry! Mikael Olsson
Re: Disk (over)quota in Windows 2000 Sarkos Georgios
Re: xterm log file vulnerability Kris Kennaway
Re: IIS dosn't check existance of local file before calling CGI Bronek Kozicki
Re: Zonealarm exports sensitive data Dino Amato
Re: BID 994,MS00-010 (Site Server Commerce Edition non-validated SQL inputs) Bertrand Schmitt
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Derek Callaway
Re: [Serv-U] Re: Serv-U FTP-Server v2.4a showing real path Rob Beckers
IE 5.x allows executing arbitrary programs using .chm files Georgi Guninski
ms activex setup ctl exploit. Mukund
Re: Disk (over)quota in Windows 2000 Bret Piatt
FW: W2K & ~25000+ temp files = crash + corruption? Jon St. Arnaud
TrendMicro OfficeOffice Scan Jeff Stevens
Re: BID 994,MS00-010 (Site Server Commerce Edition non-validated SQL inputs) Steve.Kimble () ICL COM
FreeBSD Security Advisory: FreeBSD-SA-00:06.htdig FreeBSD Security Officer
[Debian] New version of nmh released Aleph One
[Debian] New version of htdig released Aleph One
Administrivia Elias Levy
Re: Disk (over)quota in Windows 2000 John Wiltshire
[XFree86 3.3.6] fix for race conditions in xterm logfile handling Branden Robinson
How to Write Secure Code B Potter
Distributing Patches in Email (was: RE: EZ Shopper 3.0 shopping cart CGI remote command execution) Scott Blake
fam Vulnerability SGI Security Coordinator
Re: Disk (over)quota in Windows 2000 Joe Melhado
Foundry Networks ServerIron sequence predictability fix soon to be available Andrew van der Stock
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Joe Shaw
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Przemyslaw Frasunek

Thursday, 02 March

Re: Addendum to Firewall-1 FTP Server Vulnerability Jacek Lipkowski
Re: SSH & xauth Cy Schubert - ITSD Open Systems Group
DNSTools v1.08 has no input validation Jonathan Leto
Minor security problem in The Bat! 3APA3A
Re: Disk (over)quota in Windows 2000 Curtis Anderson, CNE, MCSE
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Eugene Teo
Re: "Association of Responsible Internet Providers"? David Nesting
infosrch.cgi vulnerability (IRIX 6.5) rpc
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Derek Callaway
X-Force Response to ISS RealSecure's ability to address modified attack signatures X-Force
Re: Addendum to Firewall-1 FTP Server Vulnerability Mikael Olsson
MH also vulnerable to remote attack (was Re: nmh security update) Dan Harkless
Re: [XFree86 3.3.6] fix for race conditions in xterm logfile handling Joel Klecker
Corel Linux 1.0 dosemu default configuration: Local root vuln suid () SUID KG
Re: Corel Linux 1.0 dosemu default configuration: Local root vuln VaMPiRe, WHiTe

Friday, 03 March

Potential security problem with mtr Viktor Fougstedt
Aol Instant Messenger DoS vulnerability hi im cruz
Re: Disk (over)quota in Windows 2000 David LeBlanc
TrendMicro OfficeScan, numerous security holes, remote files modification. Captain'z root
Re: Distributing Patches in Email Dirk Nimmich
Re: Corel Linux 1.0 dosemu default configuration: Local root vuln Seth R Arnold
Re: OfficeScan; additional observation Ben Greenbaum
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Lamagra Argamal
Pocsag remote access to client can't be disabled. Kuji
Re: Potential security problem with mtr LaMont Jones
Re: Potential security problem with mtr Viktor Fougstedt
Problem with MacOS 9 Multiple Users and Netware AFP Don Lambert
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Przemyslaw Frasunek
Re: Potential security problem with mtr Rogier Wolff
Re: Distributing Patches in Email (was: RE: EZ Shopper 3.0 shopping cart CGI remote command execution) der Mouse
NT Roaming Profiles blocked by NAV 7.x for Corp. Edition Peter Heath

Saturday, 04 March

mtr-0.42 is out. Rogier Wolff
Re: Corel Linux 1.0 dosemu default configuration: Local root vuln Pavel Kankovsky
Re: [ Hackerslab bug_paper ] Linux dump buffer overflow Ronald Huizer
Re: Potential security problem with mtr Viktor Fougstedt
OpenLinux 2.3: rpm_query harikiri
(fwd) Dump/restore 0.4b15 released Derek Callaway
Re: lynx - someone is deaf and blind ;) Kris Kennaway

Sunday, 05 March

ColdFusion Bug: Application.cfm shows full path vwaaijen
Re: Minor security problem in The Bat! Andrei Koulik
Re: Corel Linux 1.0 dosemu default configuration: Local root vuln Nate Eldredge
Oracle installer problem Keyser Soze
Roses Labs BisonWare FTP Advisory Conde Vampiro

Monday, 06 March

Re: [XFree86 3.3.6] fix for race conditions in xterm logfile handling Olaf Kirch
OFFICIAL RELEASE of the [device]\[device] advisory Zoa_Chien
Re: Potential security problem with mtr - fixed Jeff Dafoe
con\con is a old thing (anyway is cool) Ussr Labs
userv (security boundary tool) 1.0.0 released Ian Jackson
Re: Aol Instant Messenger DoS vulnerability Elias Levy
[RHSA-2000:006-01] New nmh packages available bugzilla () REDHAT COM
Microsoft Security Bulletin (MS00-015) Microsoft Product Security
(BisonWare FTP Server V3.5 Roses Labs Security Advisory) is a old reported thing Ussr Labs

Tuesday, 07 March

Re: Corel Linux 1.0 dosemu default configuration: Local root vuln Michael Meskes
@Stake Advisory: Microsoft Office 2000 ClipArt Vulnerablity Weld Pond
PGP Signatures security BUG! Povl H. Pedersen
Re: Caldera OpenLinux 2.3 rpm_query Olaf Kirch
NAI/McAfee Viruscan Engine does not scan .VBS files by default Bram Kerkhof
Re: lynx - someone is deaf and blind ;) Mariusz Woloszyn
Re: OfficeScan; additional observation Dan Schrader
Re: dump buffer overflow Lamagra Argamal
TFN2K Analysis - Update 1.3 Jason Barlow
Re: @Stake Advisory: Microsoft Office 2000 ClipArt Vulnerablity Dustin Miller

Wednesday, 08 March

Re: dump buffer overflow Przemyslaw Frasunek
Re: PGP Signatures security BUG! Tobias Haustein
Re: NAI/McAfee Viruscan Engine does not scan .VBS files by default Eric Chien
Re: PGP Signatures security BUG! Werner Koch
RealServer exposes internal IP addresses tschweikle () FIDUCIA DE
Re: PGP Signatures security BUG! Tobias Haustein
Re: NAI/McAfee Viruscan Engine does not scan .VBS files by defau Nick FitzGerald
Re: @Stake Advisory: Microsoft Office 2000 ClipArt Vulnerablity Weld Pond
New online publication: "Computer Vulnerabilities" Eric Knight
Re: con\con is a old thing (anyway is cool) Stephen White
Re: NAI/McAfee Viruscan Engine does not scan .VBS files by default Roy Voortman
Re: PGP Signatures security BUG! Eric Murray
[SAFER 000309.EXP.1.4] StarScheduler (StarOffice) vulnerabilities Vanja Hrustic
Re: PGP Signatures security BUG! Salzman, Noah
Re: PGP Signatures security BUG! Steven M. Bellovin
Re: lynx - someone is deaf and blind ;) Steve VanDevender
[ Hackerslab bug_paper ] Linux printtool get printer password Sheshep ankh Dubhe
Realnetworks is trojaning people...again!!! pedward () WEBCOM COM
Re: dump buffer overflow Kris Kennaway
[TL-Security-Announce] mtr-0.41 and earlier TLSA2000003-1 (fwd) Katie Moussouris
[TL-Security-Announce] man-1.5g-5 and earlier TLSA2000004-1 Jeremiah Johnson
Re: dump buffer overflow Warner Losh
[TL-Security-Announce] htdig-3.1.2-1 and earlier TLSA200005-1 (fwd) Katie Moussouris

Thursday, 09 March

Re: PGP Signatures security BUG! Povl H. Pedersen
Re: Realnetworks is trojaning people...again!!! Snorre Fagerland
Re: [ Hackerslab bug_paper ] Linux printtool get printer password Tuomas Jormola
12th Annual FIRST conference Roger Safian
Enumerate Root Web Server Directory Vulnerability for IIS 4.0 Jason Lutz
Re: RealServer exposes internal IP addresses Doug Monroe
Realplayer update pedward () WEBCOM COM
Microsoft Security Bulletin (MS00-014) Microsoft Product Security
[TL-Security-Announce] MySQL-3.22.27-5 and earlier TLSA200006-1 Katie Moussouris
Re: NAI/McAfee Viruscan Engine does not scan .VBS files by default Paul Hoffman
Microsoft Security Bulletin (MS00-008) Microsoft Product Security
RealPlayer and Comet Cursor Keela Robison
Re: RealPlayer and Comet Cursor pedward () WEBCOM COM
The Comet Cursor Sarah MacArthur
Network File Resource Vulnerability Eric Hacker

Friday, 10 March

Re: NAI/McAfee Viruscan Engine does not scan .VBS files by default Roy Voortman
Extending the FTP "ALG" vulnerability to any FTP client Mikael Olsson
Linux patch for blocking buffer overflow based attacks massimo () IAC RM CNR IT
ICQ remote DoS Philip Stoev
Re: PGP Signatures security BUG! Florian Weimer
Re: snmp problems still alive... Damir Rajnovic
Many machines still vulnerable to ip fragment attacks Andrew Daviel

Saturday, 11 March

4 Netscape Navigator bugs Marc Slemko
Kewlhair Security Advisory --DSL ROUTERS Andrew R. Siverly
Fwd: The Bat! version 1.41 3APA3A
TESO advisory -- atsadc krahmer () CS UNI-POTSDAM DE
TESO advisory -- wmcdplay krahmer () CS UNI-POTSDAM DE
Re: Extending the FTP "ALG" vulnerability to any FTP client Dug Song
Re: con\con is a old thing (anyway is cool) Elias Levy
Re: Extending the FTP "ALG" vulnerability to any FTP client Mitchell Blank Jr
Re: Extending the FTP "ALG" vulnerability to any FTP client Mikael Olsson
Re: Network File Resource Vulnerability David LeBlanc
Re: Fwd: ircii-4.4 buffer overflow Derek Callaway
Our old friend Firewall-1 Chris Brenton
Re: Extending the FTP "ALG" vulnerability to any FTP client Solar Designer
Re: con\con is a old thing (anyway is cool) YUFU
Re: TESO advisory -- wmcdplay Kris Kennaway

Sunday, 12 March

CSS Exploits + RDS (IE5) Shane Hird
Re: Sendmail 8.8.x - time to upgrade? Kris Kennaway
Advisory Update: ServerIron TCP/IP predictability fixed Andrew van der Stock
misc. cross site scripting issues Marc Slemko

Monday, 13 March

New Solaris Vulnerability Calculator, Sun Mailing list, and Sun Focus area from SecurityFocus.com Jeremy Rauch
Re: Enumerate Root Web Server Directory Vulnerability for IIS 4.0 Ollie Whitehouse
a few bugs ... Maurycy Prodeus
Re: Kewlhair Security Advisory --DSL ROUTERS Bret Piatt
[ANNOUNCE] strace for NT tsabin () RAZOR BINDVIEW COM
FW: URGENT: Freeze Distribution of IE 5.0, 5.0a, and 5.0b with th e 128-bit encryption pack Cunningham Stace D MSgt 2 AF/XPI
Re: [ Hackerslab bug_paper ] Linux printtool get printer passwor Brian Knotts
Re: RealServer exposes internal IP addresses Jay C Austad
Re: TESO advisory -- wmcdplay Wichert Akkerman
The out-of-domain NS registration attack D. J. Bernstein
Re: snmp problems still alive... monti
Local / Remote Multiples Remote DoS Attacks in MERCUR v3.2* for Windows 98/NT Vulnerability Ussr Labs
Re: snmp problems still alive... Damir Rajnovic

Tuesday, 14 March

Update: Extending the FTP "ALG" vulnerability to any FTP client Mikael Olsson
IE and Outlook 5.x allow executing arbitrary programs using .eml files Georgi Guninski
Re: Microsoft Security Bulletin (MS00-014) Rayburn, Gordon
FW: [NTBUGTRAQ] AT Jobs - Denial of serice/Privilege Elevation DeAvillez, Carlos
Unexpected and dangerous AIX 4.X linker behavior Gregory Neil Shapiro
Administrivia Elias Levy
Sojourn Search Engine exposes files Cerberus Security Team
Exploit for Mandrake 6.1 (PAM/userhelper bug) Paulo Ribeiro
Oracle Web Listener 4.0.x Cerberus Security Team
Re: Extending the FTP "ALG" vulnerability to any FTP client Darren Reed
Re: The out-of-domain NS registration attack David Terrell
Re: Advisory Update: ServerIron TCP/IP predictability fixed H D Moore
Re: Update: Extending the FTP "ALG" vulnerability to any FTP client Darren Reed
Re: Our old friend Firewall-1 Hugo.van.der.Kooij () CAIW NL

Wednesday, 15 March

Re: Update: Extending the FTP "ALG" vulnerability to any FTP client Mikael Olsson
Re: a few bugs ... Thomas Roessler
abuse.man (webmanager kit) Guido Bakker
Re: The out-of-domain NS registration attack David, Gover
FW: Enumerate Root Web Server Directory Vulnerability for IIS 4.0 Ollie Whitehouse
Re: IE and Outlook 5.x allow executing arbitrary programs using .emlfiles Sylwester Zarębski
Re: Update: Extending the FTP "ALG" vulnerability to any FTP client Darren Reed
Bypassing IP filters in Bordermanager 3.5 Roy Sigurd Karlsbakk
Re: Our old friend Firewall-1 Chris Brenton
Local / Remote DoS Attack in MERCUR WebView WebMail-Client 1.0 for Windows 98/NT Vulnerability Ussr Labs
Malicious-HTML vulnerabilities at deja.com Niall Smart
Re: IE and Outlook 5.x allow executing arbitrary programs using .eml files David LeBlanc
Re: IE and Outlook 5.x allow executing arbitrary programs using .eml files Ryan Russell
FreeBSD Security Advisory: FreeBSD-SA-00:07.mh FreeBSD Security Officer
FreeBSD Security Advisory: FreeBSD-SA-00:08.lynx FreeBSD Security Officer
FreeBSD Security Advisory: FreeBSD-SA-00:09.mtr FreeBSD Security Officer
FreeBSD Security Advisory: FreeBSD-SA-00:10.orville-write FreeBSD Security Officer
Re: con\con is a old thing (anyway is cool) Oliver Friedrichs
[TL-Security-Announce] dump-0.4b11-1 and earlier TLSA200007-1 Katie Moussouris
Process hiding in linux Pavel Machek
Re: Unexpected and dangerous AIX 4.X linker behavior Dan Harkless
Certificate Validation Error in Netscape Browsers... Dennis W. Mattison (Little Wolf)

Thursday, 16 March

Re: FW: [NTBUGTRAQ] AT Jobs - Denial of serice/Privilege Elevation Andy Caus
OfficeScan TrendMicro: admin for everybody ! Gregory Duchemin
TESO & C-Skills development advisory -- imwheel Sebastian
TESO & C-Skills development advisory -- kreatecd Sebastian
For those who installed Decon fix for con/con vulnerability Tima
Analysis of the Shaft distributed denial of service tool Sven Dietrich
nmap causes DoS on DGUX The Unicorn
Trend Micro release patch for "OfficeScan DoS & Message Replay" V ulnerabilies Richard Sheng
Microsoft Security Bulletin (MS00-017) Microsoft Product Security
Cisco Security Notice: Cisco Secure PIX Firewall FTP Vulnerabilities security-alert () CISCO COM
Re: Advisory Update: ServerIron TCP/IP predictability fixed Max Vision

Friday, 17 March

Re: IE and Outlook 5.x allow executing arbitrary programsusing.emlfiles Sylwester Zarębski
Re: a few bugs ... Michal Zalewski
Re: Enumerate Root Web Server Directory Vulnerability for IIS 4.0 Chris Paget
[SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp' tags Vanja Hrustic
Re: Malicious-HTML vulnerabilities at deja.com Geert Altena
Re: con\con is a old thing (anyway is cool) Bernd Luevelsmeyer
Re: Our old friend Firewall-1 Parkin, Miles
Re: IE and Outlook 5.x allow executing arbitrary programs using.eml files Georgi Guninski
Re: Exploit for Mandrake 6.1 (PAM/userhelper bug) Darron Froese
Re: Analysis of the Shaft distributed denial of service tool Max Vision
Re: Update: Extending the FTP "ALG" vulnerability to any FTP clie nt Lars.Troen () MERKANTILDATA NO
Re: IE and Outlook 5.x allow executing arbitrary programs using . eml files Schoedel, Christine
Re: con\con is a old thing (anyway is cool) David LeBlanc
DoS with NAVIEG PAUL VanDyke
Re: The out-of-domain NS registration attack Sanford Whiteman
Re: Process hiding in linux Peter W
Re: FW: [NTBUGTRAQ] AT Jobs - Denial of serice/Privilege Elevation Daniel Harter
wmcdplayer exploits. Larry Cashdollar
Re: Exploit for Mandrake 6.1 (PAM/userhelper bug) Matt Davis
Microsoft Security Bulletin (MS00-016) Microsoft Product Security

Saturday, 18 March

Re: a few bugs ... Michal Zalewski
SQL Server Vulnerability details Chip Andrews

Sunday, 19 March

Re: TESO & C-Skills development advisory -- imwheel WHiTe VaMPiRe
Verified PIX vulnerability to FTP-Pasv attack. monti
Still More Overflows H D Moore
FreeBSD Security Advisory: FreeBSD-SA-00:07.mh [REVISED] FreeBSD Security Officer

Monday, 20 March

FW: Kewlhair Security Advisory --DSL ROUTERS Wasted Rock Ranger
PIX DMZ Denial of Service - TCP Resets Andrew Alston
Re: Process hiding in linux Pavel Machek
Re: The out-of-domain NS registration attack D. J. Bernstein
Patch: ip_masq_ftp / Linux 2.2.x (extended FTP ALG vulnerabilty) Bjarni R. Einarsson
Re: The out-of-domain NS registration attack Chris Adams
Re: Update: Extending the FTP "ALG" vulnerability to any FTP clie David Grimes
Security Bulletins Digest Aleph One
Re: Malicious-HTML vulnerabilities at deja.com Dan Harkless
Microsoft Security Bulletin (MS00-018 Microsoft Product Security
Re: a few bugs ... Coke
Re: a few bugs ... Daniel Jacobowitz
Re: a few bugs ... Michal Zalewski
Re: PGP Signatures security BUG! Will Price

Tuesday, 21 March

vqserver /........../ Johan Nilsson
Esafe Protect Gateway (CVP) does not scan virus under some conditions Hugo.van.der.Kooij () CAIW NL
Last call for paper - Raid 2000 - Deadline is March 31st Herve Debar
Re: PIX DMZ Denial of Service - TCP Resets Darren Reed
Re: Update: Extending the FTP "ALG" vulnerability to any FTP client Paul Cardon
Re: [SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp' tags amonotod
Re: Exploit for Mandrake 6.1 (PAM/userhelper bug) Jeremy Gault
Security bug in Apache project: Jakarta Tomcat Jan Madsen
[TL-Security-Announce] nmh-1.0.2 and earlier TLSA200008-1 Katie Moussouris
Re: PIX DMZ Denial of Service - TCP Resets Andrew Alston

Wednesday, 22 March

Re: [SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp'tags Vanja Hrustic
Local root compromise in GNQS 3.50.6 and 3.50.7 Philippe Andersson
Re: [SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp'tags Doug Monroe
Hide Drives does not work with OUTLOOK 98. jhw1970 () HOTMAIL COM
Re: Process hiding in linux egmont () FAZEKAS HU
Re: Advisory Update: ServerIron TCP/IP predictability fixed Adam Laurie
gpm-root egmont () FAZEKAS HU
Re: [SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp' tags jobs () NETWORKCOMMAND COM
sendmail 8.9.3 for IRIX 6.5.7 SGI Security Coordinator
Re: Still More Overflows Marc Heuse
Re: Hide Drives does not work with OUTLOOK 98. Alderman, Sean
Re: Update: Extending the FTP "ALG" vulnerability to any FTP client Hugo.van.der.Kooij () CAIW NL
Re: [SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp'tags Peter W
Re: gpm-root ADAM Sulmicki
Re: [SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp' tags Phydeaux
Subtle data corruption of TCP streams Wietse Venema
Trend Micro releases Patch for "OfficeScan Unauthenticated CGI U sage" vulnerability Richard Sheng

Thursday, 23 March

Re: gpm-root Koblinger Egmont
Re: Esafe Protect Gateway (CVP) does not scan virus under some alonr () EALADDIN COM
Re: Esafe Protect Gateway (CVP) does not scan virus under some Hugo.van.der.Kooij () CAIW NL
Re: gpm-root Alessandro Rubini
Local Denial-of-Service attack against Linux Jay Fenlason
[zsh] Advisory : Netscape WebPublisher Allows Directory Listing and Access f0bic

Friday, 24 March

Re: Local Denial-of-Service attack against Linux Michal Zalewski
Re: Esafe Protect Gateway (CVP) does not scan virus under some Smith, Eric V.
Re: Esafe Protect Gateway (CVP) does not scan virus under some Alon Rotem
Re: Esafe Protect Gateway (CVP) does not scan virus under some Alon Rotem
Re: Esafe Protect Gateway (CVP) does not scan virus under some conditions Alon Rotem
Re: Local Denial-of-Service attack against Linux dapozza
Re: Esafe Protect Gateway (CVP) does not scan virus under some Eric Chien
Re: Subtle data corruption of TCP streams Guido van Rooij
Re: Esafe Protect Gateway (CVP) does not scan virus under some Jason Brvenik
Update: Subtle data corruption of TCP streams Wietse Venema
Local Linux Crash Javor Ninov
Hide Drives does not work with OUTLOOK 98 - Summary of Answers (W InNT4) DeAvillez, Carlos
Windows 2000 Internet Server Security Configuration Tool Microsoft Security Response Center
Re: Esafe Protect Gateway (CVP) does not scan virus under some Hugo.van.der.Kooij () CAIW NL
Re: Esafe Protect Gateway (CVP) does not scan virus under some Lea, Michael
Security issues with S&P ComStock multiCSP (Linux) kadokev () MSG NET

Saturday, 25 March

AnalogX SimpleServer 1.03 Remote Crash presto chango
Windmail allow web user get any file Frankie Zie

Sunday, 26 March

Re: Esafe Protect Gateway (CVP) does not scan virus under some Alon Rotem
neat little napster bug Colten Edwards
The TCP Flags Playground Ofir Arkin
Re: Local Denial-of-Service attack against Linux Gigi Sullivan

Monday, 27 March

Re: PIX DMZ Denial of Service - TCP Resets Guido van Rooij
Re: Local Denial-of-Service attack against Linux Elias Levy
Security Problems with Linux 2.2.x IP Masquerading H D Moore
Re: Esafe Protect Gateway (CVP) does not scan virus under some Ian Turner

Tuesday, 28 March

Follow-Up: Security Problems with Linux 2.2.x IP Masquerading H D Moore
Re: neat little napster bug Markus Kern
Re: The TCP Flags Playground Granquist, Lamont
Re: Security Problems with Linux 2.2.x IP Masquerading Nigel Metheringham
Vulnerability in IRIX 5.3 and 6.2 objectserver SGI Security Coordinator
Re: Citrix ICA Basic Encryption Weld Pond
privacy problems with HTTP cache-control Martin Pool
Re: Security Problems with Linux 2.2.x IP Masquerading Darren Reed

Wednesday, 29 March

Objectserver vulnerability Howard M. Kash III
Citrix ICA Basic Encryption Dug Song
Sun Security Bulletin #00194 patrick () PINE NL
Re: Citrix ICA Basic Encryption Chris Knight
Irix Objectserver remote exploit Marcy Abene
New ZZ v1.2 Simple Nomad

Thursday, 30 March

NetCache/NetApp Release 3.4 Michal Zalewski
Re: Security Problems with Linux 2.2.x IP Masquerading Olaf Kirch
[RHSA-2000:008-01] ircii buffer overflow bugzilla () REDHAT COM
Re: Security Problems with Linux 2.2.x IP Masquerading (fwd) Tony den Haan
Microsoft Security Bulletin (MS00-019) Microsoft Product Security
Remote DoS Attack in Windows 2000/NT 4.0 TCP/IP Print Request Server Vulnerability Ussr Labs
Microsoft Security Bulletin (MS00-021) Microsoft Product Security
Napster, Inc. response to Colten Edwards Elias Levy
Cobalt apache configuration exposes .htaccess Paul Schreiber
Re: Napster, Inc. response to Colten Edwards Danny Crawford
Re: Napster, Inc. response to Colten Edwards Dylan Griffiths
Alert: MS Index Server (CISADV000330) Cerberus Security Team

Friday, 31 March

Webstar 4.0 Buffer overflow vulnerability Ilhom Djalilov
Re: Windmail allow web user get any file Ben Camp
Re: Local Denial-of-Service attack against Linux Gigi Sullivan
Microsoft Security Bulletin (MS00-006) Microsoft Product Security
[ Cobalt ] Security Advisory -- 03.31.2000 Jeff Lovell
SalesLogix Eviewer Web App Bug: URL request crashes eviewer web application Todd Beebe