Mail Index
- MDKSA-2004:024 - Updated ethereal packages fix multiple vulnerabilities
- From: Mandrake Linux Security Team
- MDKSA-2004:025 - Updated squid packages fix vulnerability
- From: Mandrake Linux Security Team
- CactuSoft CactuShop v5.x shopping cart software multiple security vulnerabilities
- From: S-Quadra Security Research
- [ GLSA 200403-10 ] Fetchmail 6.2.5 fixes a remote DoS
- [ GLSA 200403-13 ] Remote buffer overflow in MPlayer
- cdp buffer overflow vulnerability
- [ GLSA 200403-11 ] Squid ACL [url_regex] bypass vulnerability
- [ GLSA 200403-14 ] Multiple Security Vulnerabilities in Monit
- From: Aida Escriva-Sammer
- [ GLSA 200403-12 ] OpenLDAP DoS Vulnerability
- [RHSA-2004:137-01] Updated Ethereal packages fix security issues
- Re: new internet explorer exploit (was new worm)
- Re: IE ms-its: and mk:@MSITStore: vulnerability
- Re: security enforcement - new monitor for winnt
- RE: security enforcement - new monitor for winnt
- Followup: vuln in WinBlox monitor for winnt
- NOT GOOD: Outlook Express 6 + Internet Explorer 6
- From: http-equiv@xxxxxxxxxx
- RogerWilco: new funny bugs
- [CLA-2004:833] Conectiva Security Announcement - mc
- IPv4 fragmentation --> The Rose Attack
- RE: Followup: vuln in WinBlox monitor for winnt
- RE: security enforcement - new monitor for winnt
- Re: IPv4 fragmentation --> The Rose Attack
- Re: cdp buffer overflow vulnerability - updated details
- Bugfinder Being Indicted As Criminal ("Counterfeiter") in France
- Re: cdp buffer overflow vulnerability
- [CLA-2004:834] Conectiva Security Announcement - openssl
- [CLA-2004:835] Conectiva Security Announcement - ethereal
- TOOL: Adder - runtime patching in python
- Open Source Vulnerability Database Opens for Public Access
- RE: Followup: vuln in WinBlox monitor for winnt
- OpenLinux: util-linux could leak sensitive data
- From: please_reply_to_security
- RE: cdp buffer overflow vulnerability
- Google using Expired Cert and SSLv2
- Re: new internet explorer exploit (was new worm)
- UnixWare 7.1.3 Open UNIX 8.0.0 UnixWare 7.1.1 : perl unsafe Safe compartment
- From: please_reply_to_security
- OpenLinux: vim arbitrary commands execution through modelines
- From: please_reply_to_security
- Re: IPv4 fragmentation --> The Rose Attack
- [CLA-2004:836] Conectiva Security Announcement - libxml2
- Re: NetSky.q Virus. Looking for more detailed information on how the DOS will be performed.
- Pikachu -Turn on WEP !
- Releasing full source code of WinBlox
- Re: IPv4 fragmentation --> The Rose Attack
- Re: Google using Expired Cert and SSLv2
- Re: IPv4 fragmentation --> The Rose Attack
- Index viewing in imgSvr 0.4
- [SECURITY] [DSA 470-1] New Linux 2.4.17 packages fix several local root exploits (hppa)
- [OpenPKG-SA-2004.008] OpenPKG Security Advisory (squid)
- Re: Pikachu -Turn on WEP !
- Netsky.R, auto execute w/ IE6 ?
- Enterprise Application Security
- [SECURITY] [DSA 471-1] New interchange packages fix information leak
- IRIX ftpd ftp_syslog issue with anonymous FTP
- From: SGI Security Coordinator
- Remote Exploit for Aborior's Encore Web Forum
- eMule v0.42d Buffer Overflow
- IRIX Update Some Network Drivers May Leak Data
- From: SGI Security Coordinator
- Re: Bugfinder Being Indicted As Criminal ("Counterfeiter") in France
- [securityzone@macromedia.com: New Macromedia Security Zone Bulletin Posted]
- Re: Bugfinder Being Indicted As Criminal ("Counterfeiter") in France
- Re: Bugfinder Being Indicted As Criminal ("Counterfeiter") in France
- Re: Bugfinder Being Indicted As Criminal ("Counterfeiter") in France
- [SECURITY] [DSA 472-1] New fte packages fix buffer overflows
- [SECURITY] [DSA 475-1] New Linux 2.4.18 packages fix several local root exploits (hppa)
- [SECURITY] [DSA 473-1] New oftpd packages fix denial of service
- [SECURITY] [DSA 474-1] New squid packages fix ACL bypass
- [SECURITY] [DSA 460-2] New sysstat packages fix insecure temporary file creation
- [OpenPKG-SA-2004.009] OpenPKG Security Advisory (mc)
- SuSEs YaST Online Update - possible symlink attack
- NGSSoftware Insight Security Research Advisory
- Fw: new IE vurn
- Texutil symlink vulnerability.
- Multiple XSS vulnerabilities in Microsoft SharePoint Portal Server 2001
- Re: new IE vurn
- Automated wireless client penetration tool "hotspotter" released.
- Macromedia Dreamweaver Remote Database Scripts (#NISR05042004B)
- From: NGSSoftware Insight Security Research
- [Full-Disclosure] iDEFENSE Security Advisory 04.05.04: Perl win32_stat Function Buffer Overflow Vulnerability
- Advisory: Multiple Vulnerabilities in Monit
- From: mattmurphy@xxxxxxxxx
- IBM Director 3.1 Windows Agent Remote DoS
- Re: Bugfinder Being Indicted As Criminal ("Counterfeiter") in France
- Format string bug in IGI 2: Covert Strike 1.3
- Re: Bugfinder Being Indicted As Criminal ("Counterfeiter") in France
- Paper: Comparing binaries with graph isomorphisms
- MDKSA-2004:026 - Updated mplayer packages fix remotely exploitable vulnerability
- From: Mandrake Linux Security Team
- Vuln Info Disclosure may become illegal in France [was: Re: Bugfinder Being Indicted As Criminal]
- [SECURITY] [DSA 477-1] New xine-ui packages fix insecure temporary file creation
- Re: IBM Director 3.1 Windows Agent Remote DoS
- Support Contact Info
- [ GLSA 200404-01 ] Insecure sandbox temporary lockfile vulnerabilities in Portage
- [SECURITY] [DSA 476-1] New heimdal packages fix cross-realm vulnerability
- blaxxun3D(blaxxun Platform) 7 - Remote Buffer Overflow
- From: Rafel Ivgi, The-Insider
- [product-security@apple.com: APPLE-SA-2004-04-05 Security Update 2004-04-05]]
- [ GLSA 200404-02 ] KDE Personal Information Management Suite Remote Buffer Overflow Vulnerability
- From: Aida Escriva-Sammer
- RE: Netsky.R, auto execute w/ IE6 ?
- Re: Netsky.R, auto execute w/ IE6 ?
- GNU Sharutils buffer overflow vulnerability.
- Foundstone Labs Advisory: Citrix MetaFrame Password Manager 2.0
- [ GLSA 200404-03 ] Tcpdump Vulnerabilities in ISAKMP Parsing
- LNSA-#2004-0008: Multiple security problems in Monit
- Papers: The Invisible Catalog
- Panda ActiveScan 5.0 - Remote Buffer Overflow and A Crash(D.O.S)
- From: Rafel Ivgi, The-Insider
- [SECURITY] [DSA 478-1] New tcpdump packages fix denial of service
- [ GLSA 200404-05 ] ipsec-tools contains an X.509 certificates vulnerability
- Re: eSignal v7 remote buffer overflow
- Release of Cisco Attack tool Asleap
- Re: SuSEs YaST Online Update - possible symlink attack
- REAL One Player R3T File Format Stack Overflow
- From: NGSSoftware Insight Security Research
- Kerio Personal Firewall 4 and IE 6 "Bug"
- Cisco Security Advisory: A default Username and Password in WLSE and HSE devices
- From: Cisco Systems Product Security Incident Response Team
- CAN-2004-0155: The KAME IKE Daemon Racoon does not verify RSA Signatures during Phase 1, allows man-in-the-middle attacks and unauthorized connections
- Re: [waraxe-2004-SA#013 - Critical sql injection bug in PhpBB 2.0.8 and in older versions]
- [ GLSA 200404-06 ] Util-linux login may leak sensitive data
- Re: GNU Sharutils buffer overflow vulnerability.
- Re: IPv4 fragmentation --> The Rose Attack
- [ GLSA 200404-07 ] ClamAV RAR Archive Remote Denial Of Service Vulnerability
- Solaris vfs_getvfssw() local kernel exploit
- Re: GNU Sharutils buffer overflow vulnerability.
- From: Carlos Eduardo Pinheiro
- [OpenPKG-SA-2004.010] OpenPKG Security Advisory (tcpdump)
- [ GLSA 200404-04 ] Multiple vulnerabilities in sysstat
- Metasploit Framework 2.0 Released!
- RE: Kerio Personal Firewall 4 and IE 6 "Bug"
- RE: Kerio Personal Firewall 4 and IE 6 "Bug"
- [OpenPKG-SA-2004.011] OpenPKG Security Advisory (sharutils)
- Kerio Personal Firewall 4.0.13 - Remote DoS (Crash)
- Re: GNU Sharutils buffer overflow vulnerability
- McAfee Freescan ActiveX Information Disclosure [Additional Details & PoC]
- Internet Explorer 6 - Crash
- Symantec Virus Detection(Free ActiveX) - Remote Buffer Overflow
- From: Rafel Ivgi, The-Insider
- Re: Kerio Personal Firewall 4 and IE 6 "Bug"
- Mcafee FreeScan - Remote Buffer Overflow and Private Information Disclosure
- From: Rafel Ivgi, The-Insider
- Re: Symantec Virus Detection(Free ActiveX) - Remote Buffer Overflow, Apr 7 2004 2:22AM
- [ GLSA 200404-08 ] GNU Automake symbolic link vulnerability
- [waraxe-2004-SA#014 - Cross-Site Scripting aka XSS in AzDGDatingLite]
- Cisco Security Advisory: Cisco IPSec VPN Services Module Malformed IKE Packet Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- SGI Advanced Linux Environment security update #17
- From: SGI Security Coordinator
- [waraxe-2004-SA#015 - Multiple vulnerabilities in NukeCalendar v1.1.a]
- Phrack #62 Call for Papers
- [OpenPKG-SA-2004.012] OpenPKG Security Advisory (fetchmail)
- Re: IPv4 fragmentation --> The Rose Attack
- LNSA-#2004-0010: login may leak sensitive data
- Microsoft IE iframe src DoS already reported to Microsoft
- RE: [AppSec-research] New Worm/Virus April 8th
- LNSA-#2004-0009: GNU Automake symbolic link vulnerability
- Heap Overflow in Oracle 9iAS / 10g Application Server Web Cache
- LNSA-#2004-0009: GNU Automake symbolic link vulnerability
- New Worm/Virus April 8th
- Re: IPv4 fragmentation --> The Rose Attack
- Re: Microsoft IE iframe src DoS already reported to Microsoft
- PSR - #2004-001 Remote - LCDProc
- From: Priv8 Security Research
- RE: New Worm/Virus April 8th
- PSR - #2004-002 Remote - LCDProc
- From: Priv8 Security Research
- US-CERT Technical Cyber Security Alert TA04-099A -- Vulnerability in Internet Explorer ITS Protocol Handler
- Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- MDKSA-2004:027 - Updated ipsec-tools packages fix vulnerability in racoon
- From: Mandrake Linux Security Team
- Re: IPv4 fragmentation --> The Rose Attack
- [ GLSA 200404-12 ] Scorched 3D server chat box format string vulnerability
- monit 4.1 POC
- Re: Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- Browser bugs [DoS] ... where will you draw a line?
- DoS in Rsniff 1.0
- [ GLSA 200404-09 ] Cross-realm trust vulnerability in Heimdal
- [ GLSA 200404-11 ] Multiple Vulnerabilities in pwlib
- From: Aida Escriva-Sammer
- DoS in Crackalaka 1.0.8
- Re: Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- RE: Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- Re: Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- Re: DoS in Rsniff 1.0
- Re: Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- Re: Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- RE: Browser bugs [DoS] ... where will you draw a line?
- Re: IPv4 fragmentation --> The Rose Attack
- ANNOUNCE: SecLegal mailing list
- RE: Full-Disclosure is now ILLEGAL in France ! (Vulnerabilties, Technical details, Exploits ...)
- Backdoor in X-Micro WLAN 11b Broadband Router
- Re: GNU Sharutils buffer overflow vulnerability.
- Re: IPv4 fragmentation --> The Rose Attack
- Re: IPv4 fragmentation --> The Rose Attack
- Re: IPv4 fragmentation --> The Rose Attack
- Monit <= 4.2 Remote Root Exploit
- From: Eye on Security India
- Possible DoS on Linux kernel 2.4 and 2.6 using sigqueue overflow.
- From: Nikita V. Youshchenko
- UPDATE: Cisco Security Notice: Dictionary Attack on Cisco LEAP Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- Gnome nautilus bug
- Multiple Vulnerabilities In Tiki CMS/Groupware [ TikiWiki ]
- eMule <= 0.42d Remote Exploit
- IE 6 Print Without Prompt
- [waraxe-2004-SA#017 - User-level authentication bypass in phpnuke 6.x-7.2]
- BID 7482, bug in OpenSSH (Still in FreeBSD-STABLE)
- Citadel/UX 6.20 fixes local permissions vulnerability
- Adobe Acrobat Reader PDF file DoS vulnerability
- [CLA-2004:838] Conectiva Security Announcement - squid
- Microsoft Outlook Express EML file Crash vulnerability
- [waraxe-2004-SA#018 - Admin-level authentication bypass in phpnuke 6.x-7.2]
- [CLA-2004:837] Conectiva Security Announcement - mod_python
- new strange worm
- Microsoft Internet Explorer BMP file memory DoS vulnerability
- RE: IPv4 fragmentation --> The Rose Attack
- [waraxe-2004-SA#016 - Cross-Site Scripting aka XSS in phpnuke 6.x-7.2 part 3]
- [SECURITY] [DSA 479-2] New Linux 2.4.18 packages fix local root exploit (i386)
- US-CERT Technical Cyber Security Alert TA04-104A -- Multiple Vulnerabilities in Microsoft Products
- FW: [Unpatched] 4 new Microsoft patches, 4 old updated, 24 vulnerabilities
- [RHSA-2004:159-01] Updated Subversion packages fix security vulnerability in neon
- Cisco Security Notice: Cisco IPsec VPN Implementation Group Password Usage Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- Include vulnerability in GEMITEL v 3.50
- ZA Security Hole
- [OpenPKG-SA-2004.014] OpenPKG Security Advisory (mysql)
- [Full-Disclosure] iDEFENSE Security Advisory 04.15.04: RealNetworks Helix Universal Server Denial of Service Vulnerability
- Re: XSS, Admin Access via Cookie and File Upload vulnerability in NewsPHP.
- FreeBSD Security Advisory FreeBSD-SA-04:07.cvs
- From: FreeBSD Security Advisories
- SCT javascript execution vulnerability
- Re: Backdoor in X-Micro WLAN 11b Broadband Router
- TSLSA-2004-0020 - kernel
- From: Trustix Security Advisor
- [OpenPKG-SA-2004.015] OpenPKG Security Advisory (ethereal)
- [OpenPKG-SA-2004.016] OpenPKG Security Advisory (neon)
- Re: ZA Security Hole
- [securityzone@macromedia.com: New Macromedia Security Zone Bulletin Posted]
- After Ms patches last Wed ...
- void.at - neon format string bugs
- Re: ZA Security Hole
- From: Pablo G. Sabbatella
- "Delete anti-virus and firewall software" --Microsoft
- Re: ZA Security Hole
- Re: After Ms patches last Wed ...
- Norton AntiVirus nested file manual scan bypass.....
- [SECURITY] [DSA 486-1] New cvs packages fix multiple vulnerabilities
- Re: After Ms patches last Wed ...
- Squirrelmail Chpasswod bof
- Re: After Ms patches last Wed ...
- Internet Explorer XSS published unpatched in SP1 AND SP2
- From: Rafel Ivgi, The-Insider
- [SCSA-028] Nuked-Klan Multiple Vulnerabilities
- Network Intelligence Advisory - Denial of Service Vulnerability in ColdFusion MX
- [SECURITY] [DSA 491-1] New Linux 2.4.19 packages fix local root exploit (mips)
- [SECURITY] [DSA 490-1] New Zope packages fix arbitrary code execution
- MS04-011 SSL Remote DoS PoC
- From: David Barroso Berrueta
- NEW backdoor in X-Micro WLAN 11b Broadband Router
- Re: After Ms patches last Wed ...
- [SECURITY] [DSA 431-2] New perl packages fix information leak in suidperl
- [SECURITY] [DSA 487-1] New neon packages fix format string vulnerabilities
- RE: After Ms patches last Wed ...
- [BUG-CORRECTION] IISShield "Server" header costumization
- [SECURITY] [DSA 488-1] New logcheck packages fix insecure temporary directory
- [SECURITY] [DSA 489-1] New Linux 2.4.17 packages fix local root exploit (mips+mipsel)
- [slackware-security] tcpdump denial of service (SSA:2004-108-01)
- From: Slackware Security Team
- [SECURITY] [DSA 492-1] New iproute packages fix denial of service
- DoS in NETFile FTP/Web Server
- Re: After Ms patches last Wed ...
- Re: Squirrelmail Chpasswod bof
- after ms patches...
- Re: After Ms patches last Wed ...
- RE: MS04-011 Break SSL support in IE 6.0.3790.0 with Windows 2003
- Re: Norton AntiVirus nested file manual scan bypass.....
- Re: After Ms patches last Wed ...
- RE: After Ms patches last Wed ...
- From: Brito, Nelson (ISS Brazil)
- [ GLSA 200404-14 ] Multiple format string vulnerabilities in cadaver
- Re: After Ms patches last Wed ...
- Idea of CAW (Creation of Attack Wood)
- RE: After Ms patches last Wed ...
- [ GLSA 200404-16 ] Multiple new security vulnerabilities in monit
- [ GLSA 200404-15 ] XChat 2.0.x SOCKS5 Vulnerability
- ssmtp insecure file creation
- New Paper - SQL Injection Signatures Evasion
- From: Imperva Application Defense Center
- MDKSA-2004:031 - Updated utempter packages fix several vulnerabilities
- From: Mandrake Linux Security Team
- BitDefender Scan Online(ActiveX) - Remote File Download & Execute & Private Information Disclosure
- From: Rafel Ivgi, The-Insider
- RE: After Ms patches last Wed ...
- phpBB modified by Przemo arbitary code execution
- From: Dariusz 'Officerrr' Kolasinski
- Re: Squirrelmail Chpasswod bof
- Microsoft Help and Support Center argument injection vulnerability
- MS Patches last Wed - SOLUTION
- LNSA-#2004-0012: Multiple format string vulnerabilities in neon
- [waraxe-2004-SA#019 - Critical sql injection bug in Phorum 3.4.7]
- Re: Squirrelmail Chpasswod bof
- phpBB 2.0.8a and lower - IP spoofing vulnerability
- MS Patches last Mon - Recap
- LNSA-#2004-0011: CVS Server and Client Vulnerabilities
- Re: phpBB 2.0.8a and lower - IP spoofing vulnerability
- Re: Squirrelmail Chpasswod bof
- [slackware-security] utempter security update (SSA:2004-110-01)
- From: Slackware Security Team
- Eudora 6.1 is evil
- Zaep AntiSpam Cross Site Scripting
- Solaris 9 patch 113579-03 introduces a NIS security bug
- KPhone STUN DoS (Malformed STUN Packets)
- Re: After Ms patches last Wed ...
- RE: "Delete anti-virus and firewall software" --Microsoft
- phpBB modified by Przemo arbitary code execution
- From: Dariusz 'Officerrr' Kolasinski
- [slackware-security] cvs security update (SSA:2004-108-02)
- From: Slackware Security Team
- MDKSA-2004:032 - Updated libneon packages fix temporary file insecurities
- From: Mandrake Linux Security Team
- MDKSA-2004:034 - Updated MySQL packages fix temporary file insecurities
- From: Mandrake Linux Security Team
- Exchange pop3 remote exploit
- NcFTP - password leaking
- From: Konstantin Gavrilenko
- MDKSA-2004:033 - Updated xine-ui packages fix temporary file insecurities
- From: Mandrake Linux Security Team
- NISCC Vulnerability Advisory 236929: Vulnerability Issues in TCP
- Re: BitDefender Scan Online(ActiveX) - Remote File Download & Execute & Private Information Disclosure
- Re: ZA Security Hole
- MDKSA-2004:035 - Updated samba packages fix privilege escalation vulnerability
- From: Mandrake Linux Security Team
- US-CERT Technical Cyber Security Alert TA04-111A -- Vulnerabilities in TCP
- Re: NcFTP - password leaking
- Re: phpBB 2.0.8a and lower - IP spoofing vulnerability
- Format String in Cherokee
- Re: Idea of CAW (Creation of Attack Wood)
- Re: After Ms patches last Wed ...
- Cisco Security Advisory: TCP Vulnerabilities in Multiple Non-IOS-Based Cisco Products
- From: Cisco Systems Product Security Incident Response Team
- [cliph@isec.pl: Linux kernel setsockopt MCAST_MSFILTER integer overflow]
- WinSCP Denial of Service
- Cisco Security Advisory: TCP Vulnerabilities in Multiple IOS Based Cisco Products
- From: Cisco Systems Product Security Incident Response Team
- Cisco Security Advisory: Vulnerabilities in SNMP Message Processing
- From: Cisco Systems Product Security Incident Response Team
- Re: NcFTP - password leaking
- Linux kernel setsockopt MCAST_MSFILTER integer overflow
- From: Wojciech Purczynski
- US-CERT Technical Cyber Security Alert TA04-111B -- Cisco IOS SNMP Message Handling Vulnerability
- [PNSA 2004-2] PostNuke Security Advisory PNSA 2004-2
- IETF Draft on Transmission Control Protocol security considerations
- [RHSA-2004:166-01] Updated kernel packages resolve security vulnerabilities
- Re: phpBB 2.0.8a and lower - IP spoofing vulnerability
- Re: ZA Security Hole
- [SECURITY] [DSA 493-1] New xchat packages fix arbitrary code execution
- Re: Idea of CAW (Creation of Attack Wood)
- Advanced Guestbook 2.2 -- SQL Injection Exploit
- [waraxe-2004-SA#022 - Multiple vulnerabilities in PostNuke 0.726 Phoenix - part 2]
- NetBSD Security Advisory 2004-006: TCP protocol and implementation vulnerability
- From: NetBSD Security-Officer
- EEYE: Yahoo! Mail Account Filter Overflow Hijack
- [waraxe-2004-SA#021 - Multiple vulnerabilities in phprofession 2.5 module for PostNuke]
- NetBSD Security Advisory 2004-005: Denial of service vulnerabilities in OpenSSL
- From: NetBSD Security-Officer
- Vulnerabilities in long-lived TCP connections on SGI systems
- From: SGI Security Coordinator
- MDKSA-2004:031-1 - Updated utempter packages fix several vulnerabilities
- From: Mandrake Linux Security Team
- SGI Advanced Linux Environment security update #18
- From: SGI Security Coordinator
- [slackware-security] xine security update (SSA:2004-111-01)
- From: Slackware Security Team
- Arbitrary file overwriting in Unreal engine through UMOD
- TCP Reset Attacks: Paper and Code Now Availble
- Netegrity SiteMinder Affiliate Agent Cookie Overflow
- Potential Microsoft PCT worm (MS04-011)
- RE: [Full-Disclosure] EEYE: Symantec Multiple Firewall TCP Options Denial of Service
- EEYE: Symantec Multiple Firewall TCP Options Denial of Service
- [waraxe-2004-SA#025 - Multiple vulnerabilities in Protector System 1.15b1 for PhpNuke]
- [waraxe-2004-SA#024 - XSS and full path disclosure in Network Query Tool 1.6]
- [ GLSA 200404-17 ] ipsec-tools and iputils contain a remote DoS vulnerability
- Apache - all versions vulnerability in OLD procesors.
- Netegrity SiteMinder Affiliate Agent Cookie Overflow
- Microsoft's Explorer and Internet Explorer long share name buffer overflow.
- RE: US-CERT Technical Cyber Security Alert TA04-111A -- Vulnerabilities in TCP
- [HOTFIX] setsockopt kernel vulnerability
- Re: Apache - all versions vulnerability in OLD procesors.
- Re: Apache - all versions vulnerability in OLD procesors.
- Re: Apache - all versions vulnerability in OLD procesors.
- Samsung SmartEther SS6215S Switch
- RE: Microsoft's Explorer and Internet Explorer long share name buffer overflow.
- Spammers can hide behind 'Email a friend/article' scripts.
- Horde webmail: mysql access
- Re: New Paper - SQL Injection Signatures Evasion
- Perl code exploting TCP not checking RST ACK.
- RE: New Paper - SQL Injection Signatures Evasion
- From: Imperva Application Defense Center
- Multiple Vulnerabilities In OpenBB
- [SECURITY] [DSA 495-1] New Linux 2.4.16 packages fix local root exploit (arm)
- Remote Format String Vulnerabilities in eXtremail
- Microsoft's Explorer and Internet Explorer long share name buffer overflow.
- Re: HP Web JetAdmin vulnerabilities.
- Re: Apache - all versions vulnerability in OLD procesors.
- [ GLSA 200404-19 ] Buffer overflows and format string
- Source Code To Test IPv4 fragmentation --> The Rose Attack
- Re: Perl code exploting TCP not checking RST ACK.
- From: Michael Gschwandtner
- Multiple vulnerabilities PHP-Nuke Video Gallery Module for PHP-Nuke
- Re: [Full-Disclosure] Microsoft's Explorer and Internet Explorer long share name buffer overflow.
- [ GLSA 200404-20 ] Multiple vulnerabilities in xine
- [ GLSA 200404-18 ] Multiple Vulnerabilities in ssmtp
- MDKSA-2004:037 - Updated kernel packages fix multiple vulnerabilities
- From: Mandrake Linux Security Team
- Re: Spammers can hide behind 'Email a friend/article' scripts.
- Multiple vulnerabilities paFileDB
- resources consumption in DiGi WWW Server
- Re: Spammers can hide behind 'Email a friend/article' scripts.
- SGI ProPack v2.4: Kernel update #3
- From: SGI Security Coordinator
- Re: Squirrelmail Chpasswod bof
- Re: Apache - all versions vulnerability in OLD procesors.
- Re: Horde webmail: mysql access
- From: Christopher T. Beers
- [ESA-20040428-004] 'kernel' Several security and bug fixes
- From: EnGarde Secure Linux
- SMC Routers have remote administration enabled by default
- SGI Advanced Linux Environment security update #19
- From: SGI Security Coordinator
- RE: [Full-Disclosure] Microsoft's Explorer and Internet Explorer long share name buffer overflow.
- Re: phpBB 2.0.8a and lower - IP spoofing vulnerability
- MDKSA-2004:038 - Updated sysklogd packages fix vulnerability
- From: Mandrake Linux Security Team
- Re: SMC Routers have remote administration enabled by default
- Re: HP Web JetAdmin vulnerabilities.
- [slackware-security] kernel security updates (SSA:2004-119-01)
- From: Slackware Security Team
- Re[2]: [Full-Disclosure] Microsoft's Explorer and Internet Explorer long share name buffer overflow.
- Re: SMC Routers have remote administration enabled by default
- MS04011 Lsasrv.dll RPC buffer overflow remote exploit (PoC)
- Re: SMC Routers have remote administration enabled by default
- Re: phpBB 2.0.8a and lower - IP spoofing vulnerability
- [SECURITY] [DSA 496-1] New eterm packages fix indirect arbitrary command execution
- New Worm??? - High level of activity on port 445
- RE: New Worm??? - High level of activity on port 445
- RE: New Worm??? - High level of activity on port 445
- From: Jodrell Dimaculangan
- RE: New Worm??? - High level of activity on port 445
Mail converted by MHonArc 2.6.8