Full Disclosure: by author

381 messages starting Oct 14 02 and ending Oct 04 02
Date index | Thread index | Author index


Andrew . Wolhuter

Andrew.Wolhuter/Sandton/RMB is out of the office. Andrew . Wolhuter (Oct 14)

Anonymous

RE: (no subject) Anonymous (Oct 03)
Re: Organization for Internet Safety (OIS) formally announced Anonymous (Oct 01)

auto461767 () hushmail com

hushmail spam/abuse/mailbombing vulnerability demonstrated by Mr. Gobbles auto461767 () hushmail com (Oct 11)

Aviram Jenik

Outlook Express Remote Code Execution in Preview Pane (S/MIME) Aviram Jenik (Oct 10)
BearShare Directory Traversal Issue Resurfaces Aviram Jenik (Oct 03)

Ben Laurie

zen-parse () gmx de is not zen-parse () gmx net Ben Laurie (Oct 07)
iDEFENSE Security Advisory 10.02.2002: Net-SNMP DoS Vulnerability Ben Laurie (Oct 03)
Organization for Internet Safety (OIS) formally announced Ben Laurie (Oct 01)
zen-parse () gmx de is not zen-parse () gmx net Ben Laurie (Oct 07)
iDEFENSE Security Advisory 10.02.2002: Net-SNMP DoS Vulnerability Ben Laurie (Oct 04)

blake () mc net

(no subject) blake () mc net (Oct 11)

Bruce Ediger

60 Poot ze-a cheekee in de-a oofee! Bruce Ediger (Oct 11)

Bruno Morisson

Multiple XSS vulnerabilites in PHPNuke Bruno Morisson (Oct 10)

bugzilla

[RHSA-2002:192-13] Updated Mozilla packages fix security vulnerabilities bugzilla (Oct 18)
[RHSA-2002:196-09] Updated xinetd packages fix denial of service vulnerability bugzilla (Oct 15)
[RHSA-2002:206-12] New kernel fixes local security issues bugzilla (Oct 17)
[RHSA-2002:205-15] New kernel fixes local security issues bugzilla (Oct 17)
[RHSA-2002:210-06] New kernel 2.2 packages fix local vulnerabilities bugzilla (Oct 17)
[RHSA-2002:223-07] Updated ypserv packages fixes memory leak bugzilla (Oct 24)

bugzilla () redhat com

[RHSA-2002:207-14] Updated packages fix PostScript and PDF security issue bugzilla () redhat com (Oct 10)
[RHSA-2002:204-10] Updated squirrelmail packages close cross-site scripting vulnerabilities bugzilla () redhat com (Oct 11)
[RHSA-2002:175-16] Updated nss_ldap packages fix buffer overflow bugzilla () redhat com (Oct 04)
[RHSA-2002:197-06] Updated glibc packages fix vulnerabilities in resolver bugzilla () redhat com (Oct 03)
[RHSA-2002:215-09] Updated fetchmail packages fix vulnerabilities bugzilla () redhat com (Oct 07)
[RHSA-2002:212-06] Updated packages fix PostScript and PDF security issue bugzilla () redhat com (Oct 04)

burpz () gmx net

PHP execution vulnerability on www.neo-modus.com (direct connect homepage) burpz () gmx net (Oct 01)

Cesar

Eweek OpenHack Challenge Cesar (Oct 24)

Charles Stevenson

Good Bye! :] Charles Stevenson (Oct 01)
Totally Off Topic: Teach me how to measure my IQ Charles Stevenson (Oct 01)
Fwd: Brute Force brew-h4-h4 : All your fsking base ( free tzunami from .gov lies) Charles Stevenson (Oct 01)
Fwd: Brute Force brew-h4-h4 : All your fsking base ( free tzunami from .gov lies) Charles Stevenson (Oct 01)
KILL STRINGZ/EREBUS/PROPHET/BLACKFIST WEEK Charles Stevenson (Sep 30)
Totally Off Topic: Teach me how to measure my IQ Charles Stevenson (Oct 01)
Fwd: Brute Force brew-h4-h4 : All your fsking base ( free tzunami from .gov lies) Charles Stevenson (Oct 01)
suexec doesn't ignore links in safe_path Charles Stevenson (Oct 01)
Totally Off Topic: Teach me how to measure my IQ Charles Stevenson (Oct 01)
Mostly Off Topic: Teach me how to hack etcetera. Charles Stevenson (Sep 30)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Predefined Restriction Tables Allow Calls to International Operator Cisco Systems Product Security Incident Response Team (Oct 04)
Cisco Security Advisory: Cisco ONS15454 and Cisco ONS15327 Vulnerabilities Cisco Systems Product Security Incident Response Team (Oct 31)
Cisco Security Advisory: Cisco CatOS Embedded HTTP Server Buffer Overflow Cisco Systems Product Security Incident Response Team (Oct 16)

Damian Gerow

60 Poot ze-a cheekee in de-a oofee! Damian Gerow (Oct 10)

Daniel Ahlberg

GLSA: gv Daniel Ahlberg (Oct 03)
GLSA: kth-krb Daniel Ahlberg (Oct 26)
GLSA: xfree Daniel Ahlberg (Oct 24)
GLSA: krb5 Daniel Ahlberg (Oct 28)
GLSA: fetchmail Daniel Ahlberg (Oct 01)
GLSA: sharutils Daniel Ahlberg (Oct 30)
GLSA: mod_ssl Daniel Ahlberg (Oct 26)
GLSA: net-snmp Daniel Ahlberg (Oct 14)
GLSA: pam_ldap Daniel Ahlberg (Oct 30)
GLSA: groff Daniel Ahlberg (Oct 19)
GLSA: python Daniel Ahlberg (Oct 03)
GLSA: heimdal Daniel Ahlberg (Oct 14)
GLSA: sendmail Daniel Ahlberg (Oct 13)
GLSA: nss_ldap Daniel Ahlberg (Oct 13)
GLSA: tetex Daniel Ahlberg (Oct 18)
GLSA: tomcat Daniel Ahlberg (Oct 15)
GLSA: apache Daniel Ahlberg (Oct 15)
GLSA: tar Daniel Ahlberg (Oct 01)
GLSA: ypserv Daniel Ahlberg (Oct 28)
GLSA: unzip Daniel Ahlberg (Oct 01)
GLSA: ggv Daniel Ahlberg (Oct 17)
GLSA: zope Daniel Ahlberg (Oct 24)

daniel.clemens

zen-parse () gmx de is not zen-parse () gmx net daniel.clemens (Oct 06)

Dave Aitel

SPIKE 2.7 Released: There's a party at my house, so bring the beer and follow me.... Dave Aitel (Oct 07)
[Immunity, Inc.]Vulnerability: RPC Service DoS (port 135/tcp) on Windows 2000 SP3 Dave Aitel (Oct 18)

Dave M. Wilson

Re: RE: 7350reass - alleged *BSD remote kernel exploit Dave M. Wilson (Oct 22)

Dave Wilson

Hah now this redefines selling out. Dave Wilson (Oct 04)

David Endler

RE: iDEFENSE Security Advisory 10.21.02: Cross-Site Scripting Holes present in virtually all websites David Endler (Oct 21)
iDEFENSE Security Advisory 10.03.2002: Apache 1.3.x shared memory scoreboard vulnerabilities David Endler (Oct 03)
iDEFENSE Security Advisory 10.16.02: Denial of Service in Sabre Desktop Reservation Client for Windows David Endler (Oct 16)
iDEFENSE Security Advisory 10.21.02: Cross-Site Scripting Holes present in virtually all websites David Endler (Oct 20)
iDEFENSE Security Advisory 10.01.02: Sendmail smrsh bypass vulnerabilities David Endler (Oct 01)
iDEFENSE Security Advisory 10.02.2002: Net-SNMP DoS Vulnerability David Endler (Oct 02)
iDEFENSE Security Advisory 10.24.02: Directory Traversal in SolarWinds TFTP Server David Endler (Oct 24)
iDEFENSE Security Advisory 10.15.02: DoS and Directory Traversal Vulnerabilities in WebServer 4 Everyone David Endler (Oct 15)

david evlis reign

found with ABFrag.. david evlis reign (Oct 24)

David Vincent

RE: 7350reass - alleged *BSD remote kernel expl oit David Vincent (Oct 22)
60 Poot ze-a cheekee in de-a oofee! David Vincent (Oct 10)
60 Poot ze-a cheekee in de-a oofee! David Vincent (Oct 11)
Outlook Express Remote Code Execution in Pr eview Pane (S/MIME) David Vincent (Oct 10)

Day Jay

more segfaults on Redhat 6.x when passing "/proc/misc" as a parameter Day Jay (Oct 28)
"more" segfaults on Redhat 6.x Day Jay (Oct 28)

debian-security-announce

[SECURITY] [DSA 182-1] New kghostview packages fix buffer overflow debian-security-announce (Oct 28)
[SECURITY] [DSA 176-1] New gv packages fix buffer overflow debian-security-announce (Oct 16)
[SECURITY] [DSA 177-1] New PAM packages fix serious security violation in Debian/unstable debian-security-announce (Oct 17)
[SECURITY] [DSA 180-1] New NIS packages fix information leak debian-security-announce (Oct 21)
[SECURITY] [DSA 179-1] New gnome-gv packages fix buffer overflow debian-security-announce (Oct 18)
[SECURITY] [DSA 174-1] New heartbeat packages fix buffer overflows debian-security-announce (Oct 14)
[SECURITY] [DSA 185-1] New heimdal packages fix buffer overflows debian-security-announce (Oct 31)
[SECURITY] [DSA 184-1] New krb4 packages fix buffer overflow debian-security-announce (Oct 30)
[SECURITY] [DSA 181-1] New mod_ssl packages fix cross site scripting debian-security-announce (Oct 22)
[SECURITY] [DSA 183-1] New krb5 packages fix buffer overflow debian-security-announce (Oct 29)
[SECURITY] [DSA 175-1] New syslog-ng packages fix buffer overflow debian-security-announce (Oct 15)
[SECURITY] [DSA 178-1] New Heimdal packages fix remote command execution debian-security-announce (Oct 17)

dev-null

RE: 7350reass (who's responsible) dev-null (Oct 22)
IPSwitch, Inc. WS_FTP Server dev-null (Oct 25)

Dr. Peter Bieringer

Re: more segfaults on Redhat 6.x when passing "/proc/misc" as a parameter Dr. Peter Bieringer (Oct 29)

EnGarde Secure Linux

[ESA-20021003-022] tar: directory traversal vulnerability. EnGarde Secure Linux (Oct 03)
[ESA-20021007-024] apache: potential DoS, cross-site scripting, and buffer overflow vulnerabilities. EnGarde Secure Linux (Oct 07)
[ESA-20021022-026] local kernel vulnerabilities EnGarde Secure Linux (Oct 22)
[ESA-20021003-023] fetchmail-ssl: buffer overflows and broken boundary checks. EnGarde Secure Linux (Oct 03)
[ESA-20021003-021] glibc: several security-related updates. EnGarde Secure Linux (Oct 03)
[ESA-20021016-025] syslog-ng buffer overflow in macro handling code EnGarde Secure Linux (Oct 17)
[ESA-20021029-027] mod_ssl cross-site scripting vulnerability. EnGarde Secure Linux (Oct 29)
[ESA-20021029-028] syslog-ng: buffer overflow in macro handling code (UPDATED) EnGarde Secure Linux (Oct 29)

enigmatic-arcanum

Re: Linux Kernel Exploits / ABFrag enigmatic-arcanum (Oct 18)
Re: ABfrag followup / WITHOUT ATTACHMENT enigmatic-arcanum (Oct 24)

EPiC

[PHC] FREE SECURITY BOOKS !!! [PHC] EPiC (Oct 02)

Florian Weimer

zen-parse () gmx de is not zen-parse () gmx net Florian Weimer (Oct 07)
zen-parse () gmx de is not zen-parse () gmx net Florian Weimer (Oct 07)
zen-parse () gmx de is not zen-parse () gmx net Florian Weimer (Oct 06)

Francisco Guerreiro

(no subject) Francisco Guerreiro (Oct 03)

FreeBSD Security Advisories

FreeBSD Security Notice FreeBSD-SN-02:06 FreeBSD Security Advisories (Oct 10)

full-disclosure () lists netsys com

[SECURITY] [DSA 169-1] New ht://Check packages fix cross site scripting problem full-disclosure () lists netsys com (Oct 08)
[SECURITY] [DSA 171-1] New fetchmail packages fix buffer overflows full-disclosure () lists netsys com (Oct 08)
[SECURITY] [DSA 172-1] New tkmail packages fix insecure temporary file creation full-disclosure () lists netsys com (Oct 08)
[SECURITY] [DSA 169-1] New tomcat packages fix unintended source code disclosure full-disclosure () lists netsys com (Oct 04)
[SECURITY] [DSA 173-1] New bugzilla packages fix privilege escalation full-disclosure () lists netsys com (Oct 09)
www.msnbc.com full-disclosure () lists netsys com (Oct 03)

Gary E. Miller

GLSA: tar Gary E. Miller (Oct 01)

George Staikos

sympatico.ca uses weak encryption on their billing server George Staikos (Oct 29)

Georgi Guninski

Hah now this redefines selling out. Georgi Guninski (Oct 04)
Organization for Internet Safety (OIS) formally announced Georgi Guninski (Oct 01)

Giordani Rodrigues

Outlook Express Remote Code Execution in Preview Pane (S/MIME) Giordani Rodrigues (Oct 10)

gobbles

Re: Administrivia - Regarding bulk mail gobbles (Oct 21)
Re: PHC = HFG.. same kids, different tune gobbles (Oct 21)

gobbles () hushmail com

276 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
8 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
151 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
2 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
7 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
48 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
24 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
250 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
180 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
13 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
233 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
239 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
12 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
33 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
10 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
131 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
82 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
150 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
217 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
65 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
41 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
17 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
25 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
243 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
112 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
179 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
187 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
6 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
214 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
256 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
96 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
22 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
72 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
1 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
30 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
119 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
86 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
204 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
130 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
95 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
265 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
5 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
20 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
146 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
39 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
196 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
251 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
280 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
4 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
14 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
212 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
47 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
125 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
60 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
19 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
227 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
57 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
136 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
9 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
267 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
221 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
35 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
74 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
185 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
166 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
21 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
59 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
3 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
173 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)
261 Poot ze-a cheekee in de-a oofee! gobbles () hushmail com (Oct 10)

Gregory Steuck

XXE (Xml eXternal Entity) attack Gregory Steuck (Oct 30)

guejez

SCAN Associates Advisory: Molly 0.5 - Remote Command Execution guejez (Oct 18)
SCAN Associates Advisory: madhater perlbot 1.0 beta - Remote Command Execution guejez (Oct 18)
SCAN Associates Advisory: perlbot 1.9.2 - Remote Command Execution guejez (Oct 18)

Guy Cohen

Re: found with ABFrag.. Guy Cohen (Oct 25)
suexec doesn't ignore links in safe_path Guy Cohen (Oct 01)
suexec doesn't ignore links in safe_path Guy Cohen (Oct 01)

Helmut Springer

Re: Response from CERT regarding Linux Slapper worm Helmut Springer (Oct 31)

HggdH

Fw: Outlook Express Remote Code Execution in Preview Pane (S/MIME) HggdH (Oct 10)
QRe: Outlook Express Remote Code Execution in Preview Pane (S/MIME) HggdH (Oct 10)
NTFS exploit HggdH (Sep 30)

hushmail_cowards () hushmail com

PHC = HFG.. same kids, different tune hushmail_cowards () hushmail com (Oct 05)

Isaak Bloodlore

Recent exploit disclosure & iDEFENSE Isaak Bloodlore (Oct 04)
Organization for Internet Safety (OIS) formally announced Isaak Bloodlore (Sep 30)
iDEFENSE Security Advisory 10.02.2002: Net-SNMP DoS Vulnerability Isaak Bloodlore (Oct 03)
Mostly Off Topic: Teach me how to hack etcetera. Isaak Bloodlore (Oct 01)

Janusz Niewiadomski

RE: 7350reass - alleged *BSD remote kernel exploit Janusz Niewiadomski (Oct 22)

Jason Barbour

RE: found with ABFrag.. Jason Barbour (Oct 24)

Jedi/Sector One

Multiple vulnerabitilies in phpRank Jedi/Sector One (Oct 06)

Joe Testa

Reproducing the MS DCE-RPC DOS. Joe Testa (Oct 20)
How to reproduce the IIS Host Header DOS Joe Testa (Oct 11)

John

Do Terrorists Really Have More Fun? John (Oct 01)
Do Terrorists Really Have More Fun? John (Oct 02)

John . Airey

Response from CERT regarding Linux Slapper worm John . Airey (Oct 31)

John.Airey () rnib org uk

Outlook Express Remote Code Execution in Pr eview Pane (S/MIME) John.Airey () rnib org uk (Oct 11)

John Cartwright

Administrivia - (Un)subscription requests John Cartwright (Oct 11)
List Charter John Cartwright (Oct 08)
I like to make charters John Cartwright (Oct 09)
Administrivia - Regarding bulk mail John Cartwright (Oct 11)

johnc () grok org uk

I like to make charters johnc () grok org uk (Oct 08)

jsyn

cypherpunk wargames jsyn (Oct 14)

Ka

Totally Off Topic: Teach me how to measure my IQ Ka (Oct 01)
Totally Off Topic: Teach me how to measure my IQ Ka (Oct 01)
Recent exploit disclosure & iDEFENSE Ka (Oct 04)
Re: ABfrag / linux kernel vulns ??? Ka (Oct 17)
Do members of full-disclosure really have more fun? Ka (Oct 02)
Totally Off Topic: Teach me how to measure my IQ Ka (Oct 01)

Kevin Finisterre

Hah now this redefines selling out. Kevin Finisterre (Oct 03)

KF

Re: RE: 7350reass - alleged *BSD remote kernel exploit KF (Oct 22)
Hah now this redefines selling out. KF (Oct 03)
Re: ABfrag / linux kernel vulns KF (Oct 17)

lcamtuf

unsuscribe lcamtuf (Oct 14)
unsuscribe lcamtuf (Oct 14)

Luis GARCIA

help Luis GARCIA (Oct 11)

m

Re: Andrew.Wolhuter/Sandton/RMB is out of the office. m (Oct 14)

Mandrake Linux Security Team

MDKSA-2002:064 - kdelibs update Mandrake Linux Security Team (Oct 09)
MDKSA-2002:071 - kdegraphics update Mandrake Linux Security Team (Oct 24)
MDKSA-2002:063 - fetchmail update Mandrake Linux Security Team (Oct 01)
MDKSA-2002:069 - gv update Mandrake Linux Security Team (Oct 21)
MDKSA-2002:074 - mozilla update Mandrake Linux Security Team (Oct 31)
MDKSA-2002:066 - tar update Mandrake Linux Security Team (Oct 10)
MDKSA-2002:068 - apache update Mandrake Linux Security Team (Oct 15)
MDKSA-2002:070 - tetex update Mandrake Linux Security Team (Oct 23)
MDKSA-2002:065 - unzip update Mandrake Linux Security Team (Oct 10)
MDKSA-2002:073 - krb5 update Mandrake Linux Security Team (Oct 29)
MDKSA-2002:072 - mod_ssl update Mandrake Linux Security Team (Oct 24)
MDKSA-2002:062 - postgresql update Mandrake Linux Security Team (Oct 01)

Mark Renouf

Re: unsuscribe Mark Renouf (Oct 14)

martin f krafft

3 Poot ze-a cheekee in de-a oofee! martin f krafft (Oct 10)

Matthew McGehrin

iDEFENSE Security Advisory: Idiots For Defense Matthew McGehrin (Oct 03)

Matthew Murphy

PHP Information Functions May Allow Cross-Site Scripting Matthew Murphy (Oct 12)
Re: PHP Information Functions May Allow Cross-Site Scripting Matthew Murphy (Oct 13)

matt merhar

i'm looking to start a fight... matt merhar (Oct 03)
erm. new+improved www content matt merhar (Oct 08)
Hah now this redefines selling out. matt merhar (Oct 03)
striking semblance between blueboar and bugbear..... matt merhar (Oct 04)
Hah now this redefines selling out. matt merhar (Oct 04)
Mostly Off Topic: Teach me how to hack etcetera. Matt Merhar (Oct 01)
Mostly Off Topic: Teach me how to hack etcetera. matt merhar (Oct 03)
Mostly Off Topic: Teach me how to hack etcetera. Matt Merhar (Oct 01)

mattmurphy () kc rr com

Apache 2 Cross-Site Scripting mattmurphy () kc rr com (Oct 02)

Matt Rose

CERIAS CISSP Preparation Workshop Matt Rose (Oct 31)

mchaaban () umich edu

unsubscribe mchaaban () umich edu (Oct 11)

memetic-engineer () australia edu

Do Terrorists Really Have More Fun? memetic-engineer () australia edu (Oct 01)
RE:Brute Force brew-h4-h4: All your fucking base memetic-engineer () australia edu (Oct 01)
Totally Off Topic: Teach me how to measure my IQ memetic-engineer () australia edu (Oct 01)

Mike Tone

ABfrag / linux kernel vulns Mike Tone (Oct 16)

M L Lynch [ SotG ]

Do Terrorists Really Have More Fun? M L Lynch [ SotG ] (Oct 02)

mutex () hushmail com

iDEFENSE Security Advisory 10.02.2002: Net-SNMP DoS Vulnerability mutex () hushmail com (Oct 03)

mz

Recent exploit disclosure & iDEFENSE mz (Oct 04)

NetBSD Security Officer

NetBSD Security Advisory 2002-015: (another) buffer overrun in libc/libresolv DNS resolver NetBSD Security Officer (Oct 07)
NetBSD Security Advisory 2002-016: Insufficient length check in ESP authentication data NetBSD Security Officer (Oct 21)
NetBSD Security Advisory 2002-022: buffer overrun in pic(1) NetBSD Security Officer (Oct 07)
NetBSD Security Advisory 2002-026: Buffer overflow in kadmind daemon NetBSD Security Officer (Oct 21)
NetBSD Security Advisory 2002-021: rogue vulnerability NetBSD Security Officer (Oct 07)
NetBSD Security Advisory 2002-023: sendmail smrsh bypass vulnerability NetBSD Security Officer (Oct 07)
NetBSD Security Advisory 2002-025: trek(6) buffer overrun NetBSD Security Officer (Oct 24)
NetBSD Security Advisory 2002-019: Buffer overrun in talkd NetBSD Security Officer (Oct 07)

Nexus

I like to make charters Nexus (Oct 09)
Outlook Express Remote Code Execution in Preview Pane (S/MIME) Nexus (Oct 10)
60 yada yada *yawn* Nexus (Oct 10)

Niels Bakker

suexec doesn't ignore links in safe_path Niels Bakker (Oct 01)

Ogle Ron (Rennes)

Organization for Internet Safety (OIS) form ally announced Ogle Ron (Rennes) (Oct 01)

Orlando

Recent exploit disclosure & iDEFENSE Orlando (Oct 04)
iDEFENSE Security Advisory 10.02.2002: Net-SNMP DoS Vulnerability Orlando (Oct 02)
iDEFENSE Security Advisory 10.02.2002: Net-SNMP DoS Vulnerability Orlando (Oct 03)

Pekka Savola

Re: more segfaults on Redhat 6.x when passing "/proc/misc" as a parameter Pekka Savola (Oct 28)
Re: more segfaults on Redhat 6.x when passing "/proc/misc" as a parameter Pekka Savola (Oct 29)

Peter Bieringer

RHL's xinetd-2.3.9 do no longer close TCP on internal daytime service Peter Bieringer (Oct 25)

Phantasm

Hah now this redefines selling out. Phantasm (Oct 03)

phc

Re: CALL FOR PAPERS - SANTA DIED LAST YEAR phc (Oct 17)

phc () hush com

Mostly Off Topic: Teach me how to hack etcetera. phc () hush com (Sep 30)
[PHC] FREE SECURITY BOOKS !!! [PHC] phc () hush com (Oct 02)

phc () hushmail com

Organization for Internet Safety (OIS) formally announced phc () hushmail com (Oct 01)
[PHC] FREE SECURITY BOOKS !!! [PHC] phc () hushmail com (Oct 02)

please_reply_to_security () caldera com

Security Update: [CSSA-2002-SCO.39] OpenServer 5.0.5 OpenServer 5.0.6 : Buffer Overflow in Multiple DNS Resolver Libraries please_reply_to_security () caldera com (Oct 11)
Security Update: [CSSA-2002-SCO.40] OpenServer 5.0.5 OpenServer 5.0.6 : ypxfrd remote file access vulnerability please_reply_to_security () caldera com (Oct 10)

ppp-design

Re: [VulnWatch] NOCC: XSS ppp-design (Oct 20)

pyramid-rp () hushmail com

Pyramid Research Project - atphttpd security adivisorie pyramid-rp () hushmail com (Oct 12)
Pyramid Research Project - atphttpd security advisorie pyramid-rp () hushmail com (Oct 12)
Pyramid Research Project - ghttpd security advisorie pyramid-rp () hushmail com (Oct 12)

Rapid 7 Security Advisories

R7-0008: IBM WebSphere Edge Server Caching Proxy Cross-Site Scripting Issues Rapid 7 Security Advisories (Oct 23)
R7-0007: IBM WebSphere Edge Server Caching Proxy Denial of Service Rapid 7 Security Advisories (Oct 23)
R7-0006: Oracle 8i/9i Listener SERVICE_CURLOAD Denial of Service Rapid 7 Security Advisories (Oct 09)
R7-0004: Multiple Vendor Long ZIP Entry Filename Processing Issues Rapid 7 Security Advisories (Oct 02)

rfclover

7350reass - alleged *BSD remote kernel exploit rfclover (Oct 21)

Ron DuFresne

60 Poot ze-a cheekee in de-a oofee! Ron DuFresne (Oct 11)
Re: bombings in bali Ron DuFresne (Oct 14)

Schmehl, Paul L

(no subject) Schmehl, Paul L (Oct 03)

Sebastian Krahmer

SuSE Security Announcement: lprng/html2ps (SuSE-SA:2002:040) Sebastian Krahmer (Oct 31)
SuSE Security Announcement: syslog-ng (SuSE-SA:2002:039) Sebastian Krahmer (Oct 31)

security

Security Update: [CSSA-2002-038.0] Linux: inn format string and insecure open vulnerabilities security (Oct 24)
Security Update: [CSSA-2002-041.0] Linux: pam_ldap format string vulnerability security (Oct 28)
Security Update: [CSSA-2002-037.0] Linux: various packet handling vunerabilities in ethereal security (Oct 24)
Security Update: [CSSA-2002-036.0] Linux: remote buffer overflow in webalizer reverse lookup code security (Oct 23)
Security Update: [CSSA-2002-SCO.41] UnixWare 7.1.1 Open UNIX 8.0.0 : rcp of /proc causes denial-of-service security (Oct 21)
Security Update: [CSSA-2002-040.0] Linux: uudecode performs inadequate checks on user-specified output files security (Oct 28)
Security Update: [CSSA-2002-043.0] Linux: chfn (util-linux) temp file race vulnerability security (Oct 29)
Security Update: [CSSA-2002-039.0] Linux: bzip2 file creation and symbolic link vulnerabilities security (Oct 29)

shub () hushmail com

Mostly Off Topic: Teach me how to hack etcetera. shub () hushmail com (Oct 01)

silvio

Re: ABfrag - *yawn* silvio (Oct 19)
Re: ABfrag - *yawn* silvio (Oct 19)
Gl1bC L1nuxThreadz ADV1SORY, was Re: bombings in bali silvio (Oct 14)
bombings in bali silvio (Oct 14)

silvio () big net au

Do Terrorists Really Have More Fun? silvio () big net au (Oct 02)
Do Terrorists Really Have More Fun? silvio () big net au (Oct 02)
erm. new+improved www content silvio () big net au (Oct 07)
Unix-Virus Mailing List silvio () big net au (Oct 10)

skyper

Re: RE: 7350reass (who's responsible) skyper (Oct 23)

sockz loves you

ABfrag - *yawn* sockz loves you (Oct 19)
Do Terrorists Really Have More Fun? sockz loves you (Oct 01)
Do Terrorists Really Have More Fun? sockz loves you (Oct 02)
Re: bombings in bali sockz loves you (Oct 16)
Organization for Internet Safety (OIS) formally announced sockz loves you (Oct 01)
Re: CALL FOR PAPERS - SANTA DIED LAST YEAR sockz loves you (Oct 16)
Re: PHC = HFG.. same kids, different tune sockz loves you (Oct 22)

staff

CALL FOR PAPERS - SANTA DIED LAST YEAR staff (Oct 14)

Steve

Does Grandma Really Have More Fun? Steve (Oct 02)

Steven M. Christey

Organization for Internet Safety (OIS) formally announced Steven M. Christey (Sep 30)

Tamer Sahin

[SecurityOffice] Web Server 4 Everyone v1.28 Host Field Denial of Service Vulnerability Tamer Sahin (Oct 23)
Microsoft Secrets Tamer Sahin (Oct 19)
[SecurityOffice] BRS WebWeaver Web Server v1.01 Protected File Access Vulnerability Tamer Sahin (Oct 24)
[SecurityOffice] BadBlue Web Server v1.7 Protected File Access Vulnerability Tamer Sahin (Oct 24)
[SecurityOffice] Liteserve Web Server v2.0 Authorization Bypass Vulnerability Tamer Sahin (Oct 24)

theblackfist () hushmail com

Fwd: Brute Force brew-h4-h4 : All your fsking base ( free tzunami from .gov lies) theblackfist () hushmail com (Oct 01)
Fwd: Brute Force brew-h4-h4 : All your fsking base ( free tzunami from .gov lies) theblackfist () hushmail com (Oct 01)
Mostly Off Topic: Teach me how to hack etcetera. theblackfist () hushmail com (Oct 01)
Good Bye! :] << nice way to say " im owned" ( yes #parse. this is real) theblackfist () hushmail com (Oct 01)

Thomas Biege

SuSE Security Announcement: hylafax (SuSE-SA:2002:035) Thomas Biege (Oct 07)
SuSE Security Announcement: postgresql (SuSE-SA:2002:038) Thomas Biege (Oct 21)
SuSE Security Announcement: mod_php4 (SuSE-SA:2002:036) Thomas Biege (Oct 07)

Thor Larholm

Fw: [VulnWatch] Vulnerable cached objects in IE (9 advisories in 1) Thor Larholm (Oct 22)
Fw: [VulnWatch] Internet Explorer : The D-Day Thor Larholm (Oct 16)
60 Poot ze-a cheekee in de-a oofee! Thor Larholm (Oct 11)
Thor Larholm security advisory TL#004 Thor Larholm (Oct 03)

Ulf Harnhammar

Re: [VulnWatch] NOCC: XSS Ulf Harnhammar (Oct 20)
kmMail XSS Ulf Harnhammar (Oct 20)
NOCC: XSS Ulf Harnhammar (Oct 20)

White Vampire

suexec doesn't ignore links in safe_path White Vampire (Oct 01)
Hah now this redefines selling out. White Vampire (Oct 03)

yarddog

irc yarddog (Oct 15)

zan

Totally Off Topic: Teach me how to measure my IQ zan (Oct 01)
Totally Off Topic: Teach me how to measure my IQ zan (Oct 01)
10 Poot ze-a cheekee in de-a oofee! zan (Oct 10)
3 Poot ze-a cheekee in de-a oofee! zan (Oct 10)
12 Poot ze-a cheekee in de-a oofee! zan (Oct 10)
Totally Off Topic: Teach me how to measure my IQ zan (Oct 01)
Totally Off Topic: Teach me how to measure my IQ zan (Oct 01)
8 Poot ze-a cheekee in de-a oofee! zan (Oct 10)

zb0

THREATCON HITTING DANGEROUS LEVELS! zb0 (Oct 01)

zen-parse

zen-parse () gmx de is not zen-parse () gmx net zen-parse (Oct 04)
re: zen-parse () gmx de is not zen-parse () gmx net zen-parse (Oct 06)

zen-parse () gmx de

Recent exploit disclosure & iDEFENSE zen-parse () gmx de (Oct 04)