Mail Index
- [SECURITY] [DSA-1940-1] New php5 packages fix several issues
- [ MDVSA-2009:303 ] php
- [SECURITY] [DSA 1941-1] New poppler packages fix several vulnerabilities
- [security bulletin] HPSBUX02482 SSRT090249 rev.1 - HP-UX Running OpenSSL, Remote Unauthorized Data Injection, Denial of
- [USN-862-1] PHP vulnerabilities
- [ MDVSA-2009:306 ] dovecot
- Remote Command Execution in dotDefender Site Management
- Cacti 0.8.7e: Multiple security issues
- Some more details on IE STYLE zero-day
- [BMSA-2009-07] Backdoor in PyForum
- TLS / SSLv3 vulnerability explained (New ways to leverage the vulnerability)
- Eureka Mail Client Remote Buffer Overflow Exploit XP SP3 English Egghunter Edition
- Announce: RFIDIOt-1.0a released - November 2009
- Xxasp v3.3.2 Sql injection
- Windows packages for BIND9 contain vulnerable MSVC runtime components
- [ MDVSA-2009:304 ] php
- [ GLSA 200911-06 ] PEAR Net_Traceroute: Command injection
- Oracle exploit for CTXSYS.DRVXTABC.CREATE_TABLES and others
- [ MDVSA-2009:304 ] bind
- Eshopbuilde CMS SQL Injection Vulnerability
- [SECURITY] [DSA 1942-1] New wireshark packages fix several vulnerabilities
- [ MDVSA-2009:305 ] php
- Re: [Full-disclosure] ** FreeBSD local r00t zeroday
- WinAppDbg 1.3 is out!
- From: Mario Alejandro Vilas Jerez
- [oCERT-2009-017] PHP multiple issues
- ** FreeBSD local r00t zeroday
- Re: [Full-disclosure] ** FreeBSD local r00t zeroday
- Upcoming FreeBSD Security Advisory
- From: FreeBSD Security Officer
- AST-2009-010: RTP Remote Crash Vulnerability
- From: Asterisk Security Team
- Theeta CMS (Cross Site Scripting,SQL Injection) Multiple Vulnerabilities
- Re: [rejected] Oracle exploit for CTXSYS.DRVXTABC.CREATE_TABLES and others
- Secunia Research: Roxio Creator Image Rendering Integer Overflow Vulnerability
- 40 vulnerabilities in SMF 1.1.10/SMF 2.0RC2 by elhacker.net (Simple Audit)
- Re: [Full-disclosure] Remote Command Execution in dotDefender Site Management
- Re: ** FreeBSD local r00t zeroday
- [ GLSA 200912-01 ] OpenSSL: Multiple vulnerabilities
- Same-origin policy bypass vulnerabilities in several VPN products reported
- Secunia Research: Lateral Arts Photobox uploader ActiveX Control Buffer Overflow
- Re: ** FreeBSD local r00t zeroday
- Call for Papers - you Sh0t the Sheriff 4 - Security Conference, Brazil
- [SECURITY] [DSA 1943-1] New openldap2.3/openldap packages fix SSL certificate verification weakness
- [ MDVSA-2009:121-1 ] lcms
- Adobe Illustrator CS4 (V14.0.0) Encapsulated Postscript (.eps) Overlong DSC Comment Buffer Overflow Exploit
- Re: Millions of PDF invisibly embedded with your internal disk paths
- FreeBSD Security Advisory FreeBSD-SA-09:15.ssl
- From: FreeBSD Security Advisories
- FreeBSD Security Advisory FreeBSD-SA-09:16.rtld
- From: FreeBSD Security Advisories
- FreeBSD Security Advisory FreeBSD-SA-09:17.freebsd-update
- From: FreeBSD Security Advisories
- [SECURITY] [DSA 1944-1] New request-tracker packages fix session hijack vulnerability
- [SECURITY] [DSA 1945-1] New gforge packages fix denial of service
- [ MDVSA-2009:197-3 ] nss
- [ MDVSA-2009:217-3 ] mozilla-thunderbird
- [ MDVSA-2009:107-1 ] acpid
- [ MDVSA-2009:112-1 ] ipsec-tools
- [ MDVSA-2009:103-1 ] udev
- [ MDVSA-2009:106-1 ] libwmf
- [ MDVSA-2009:108-1 ] zsh
- U.S. Defense Information Systems Agency (DISA) Unix Security Readiness Review (SRR) root compromise / VU#433821
- [ MDVSA-2009:309 ] ntp
- [ MDVSA-2009:113-1 ] cyrus-sasl
- [USN-863-1] QEMU vulnerability
- CORE-2009-0911: DAZ Studio Arbitrary Command Execution
- From: CORE Security Technologies Advisories
- [ MDVSA-2009:310 ] openssl
- FreeBSD Security Advisory FreeBSD-SA-09:15.ssl [REVISED]
- From: FreeBSD Security Advisories
- [ MDVSA-2009:308 ] gnutls
- [ MDVSA-2009:292-1 ] wireshark
- [ MDVSA-2009:132-1 ] libsndfile
- RE: Millions of PDF invisibly embedded with your internal disk paths
- From: Thor (Hammer of God)
- [ MDVSA-2009:313-1 ] bind
- Invision Power Board <= 3.0.4 Local PHP File Inclusion and SQL Injection
- [ MDVSA-2009:290-1 ] firefox
- [ MDVSA-2009:169-1 ] libtiff
- [ MDVSA-2009:203-1 ] curl
- [InterN0T] Google Analytics plugin for Wordpress - XSS Vulnerability
- [ MDVSA-2009:208-1 ] libgadu
- [ MDVSA-2009:158-3 ] pango
- Secunia Research: DevIL DICOM "GetUID()" Buffer Overflow Vulnerability
- PHP 5.3.1 open_basedir bypass
- [ MDVSA-2009:287-1 ] xpdf
- [ MDVSA-2009:311 ] ghostscript
- [ MDVSA-2009:142-1 ] jasper
- [ MDVSA-2009:157-1 ] perl-Compress-Raw-Zlib
- [ MDVSA-2009:212-1 ] python
- [ MDVSA-2009:315 ] libneon
- [ MDVSA-2009:223-1 ] xerces-c
- [ MDVSA-2009:211-1 ] expat
- [ MDVSA-2009:312 ] dhcp
- [ MDVSA-2009:206-1 ] wget
- [ MDVSA-2009:218-1 ] w3c-libwww
- [ MDVSA-2009:213-1 ] wxgtk
- [ MDVSA-2009:200-1 ] libxml
- [ MDVSA-2009:130-1 ] gstreamer0.10-plugins-good
- [ MDVSA-2009:224-1 ] postfix
- [ MDVSA-2009:128-1 ] libmodplug
- RE: Millions of PDF invisibly embedded with your internal disk paths
- [ MDVSA-2009:314 ] apr
- [ MDVSA-2009:201-1 ] fetchmail
- [ MDVSA-2009:231-1 ] htmldoc
- [ MDVSA-2009:232-1 ] libsamplerate
- [ MDVSA-2009:297-1 ] ffmpeg
- [ MDVSA-2009:249-1 ] newt
- [ MDVSA-2009:318 ] xmlsec1
- [ MDVSA-2009:319 ] xine-lib
- [ MDVSA-2009:316 ] expat
- [ MDVSA-2009:307-1 ] libtool
- [ MDVSA-2009:272-1 ] libmikmod
- [ MDVSA-2009:284-1 ] gd
- [ MDVSA-2009:320 ] samba
- [ MDVSA-2009:321 ] pidgin
- [ MDVSA-2009:215-1 ] audacity
- [ MDVSA-2009:260-1 ] imagemagick
- [ MDVSA-2009:317 ] netpbm
- [ MDVSA-2009:219-1 ] kompozer
- Re: Millions of PDF invisibly embedded with your internal disk paths
- [SECURITY] [DSA 1946-1] New belpic packages fix cryptographic weakness
- [ MDVSA-2009:322 ] mono
- Re: Millions of PDF invisibly embedded with your internal disk paths
- [ MDVSA-2009:234-2 ] silc-toolkit
- Re: Re: Re: Re: Back door trojan in acajoom-3.2.6 for joomla
- [ MDVSA-2009:323 ] apache
- Re: Millions of PDF invisibly embedded with your internal disk paths
- PhpShop Multiple Vulnerabilities
- [ MDVSA-2009:254-1 ] graphviz
- CVE-2009-3586: CoreHTTP web server off-by-one buffer overflow vulnerability
- From: Patroklos Argyroudis
- [USN-865-1] Bind vulnerability
- Mozilla Firefox JavaScript Prompt Spoofing Weakness
- [ MDVSA-2009:229-1 ] cyrus-imapd
- [ MDVSA-2008:233-1 ] libcdaudio
- [ MDVSA-2009:252-1 ] perl-IO-Socket-SSL
- [ MDVSA-2009:324 ] php
- [ MDVSA-2009:243-2 ] freetype2
- [ MDVSA-2009:256-1 ] dbus
- [ MDVSA-2009:199-1 ] subversion
- [ MDVSA-2009:325 ] ruby
- [ MDVSA-2009:326 ] mysql
- [USN-866-1] gnome-screensaver vulnerability
- [SECURITY] [DSA 1947-1] New Shibboleth packages fix cross-site scripting
- [ MDVSA-2009:282-1 ] cups
- Secunia Research: Novell iPrint Client "target-frame" Parameter Buffer Overflow
- Secunia Research: Novell iPrint Client Date/Time Parsing Buffer Overflow
- Security Contact for Netcool at IBM?
- From: Michael Gripenstedt
- [ MDVSA-2009:251-1 ] postgresql8.2
- [security bulletin] HPSBMA02481 SSRT090113 rev.1 - HP OpenView Data Protector Application Recovery Manager, Remote Denial
- [ MDVSA-2009:191-1 ] OpenEXR
- Re: Security Contact for Netcool at IBM?
- [ MDVSA-2009:327 ] clamav
- Applicure Technologies response
- [ MDVSA-2009:133-1 ] irssi
- [ MDVSA-2009:098-1 ] krb5
- [ MDVSA-2009:099-1 ] openafs
- [ MDVSA-2009:126-1 ] eggdrop
- [SECURITY] [DSA 1948-1] New ntp packages fix denial of service
- ZDI-09-086: Microsoft Internet Explorer XHTML DOM Manipulation Memory Corruption Vulnerability
- [ MDVSA-2009:091-1 ] mod_perl
- ZDI-09-089: Microsoft Windows Intel Indeo Codec Parsing Heap Overflow Vulnerability
- [ MDVSA-2009:093-1 ] mpg123
- [ MDVSA-2009:038-1 ] blender
- [security bulletin] HPSBUX02495 SSRT090151 rev.1 - HP-UX Running sendmail, Remote Denial of Service (DoS)
- Notepad++ buffer overflow issue
- ZDI-09-087: Microsoft Internet Explorer CSS Race Condition Code Execution Vulnerability
- ZDI-09-091: Hewlett-Packard Application Recovery Manager MSG_PROTOCOL Stack Overflow Vulnerability
- [ MDVSA-2009:046-1 ] dia
- Fortinet Advisory: Fortinet Discovers Vulnerability in Indeo Codec
- From: noreply-secresearch
- ZDI-09-093: Adobe Flash Player ActionScript Exception Handler Integer Overflow Vulnerability
- ZDI-09-092: Adobe Flash Player JPEG Parsing Heap Overflow Vulnerability
- ZDI-09-090: Microsoft Windows Intel Indeo Codec Parsing Stack Overflow Vulnerability
- IPB v2.x up to 3.0.4 XSS vulnerability
- UPDATE: DISA Unix SRR root compromise / CVE-2009-4211 / VU#433821
- Advisory 03/2009: Piwik Cookie unserialize() Vulnerability
- Fortinet Advisory: Fortinet Discovers Microsoft Office Project Vulnerability
- From: noreply-secresearch
- Zen Cart local file disclosure vulnerability
- [USN-867-1] Ntp vulnerability
- [ MDVSA-2009:276-1 ] python-django
- [ MDVSA-2009:059-1 ] xchat
- Advisory 02/2009: PHPIDS Unserialize() Vulnerability
- ZDI-09-094: Hewlett-Packard OpenView NNM Multiple Command Injection Vulnerabilities
- [USN-868-1] GRUB 2 vulnerability
- ZDI-09-096: Hewlett-Packard OpenView NNM nnmRptConfig.exe Template Variable vsprintf Overflow Vulnerability
- [ MDVSA-2009:328 ] ntp
- ZDI-09-097: Hewlett-Packard OpenView NNM nnmRptConfig.exe Template Variable strcat Overflow Vulnerability
- ZDI-09-088: Microsoft Internet Explorer IFrame Attributes Circular Reference Dangling Pointer Vulnerability
- ZDI-09-095: Hewlett-Packard OpenView NNM Snmp.exe Oid Variable Buffer Overflow Vulnerability
- TPTI-09-08: HP OpenView NNM ovlogin.exe CGI userid/passwd Heap Overflow Vulnerability
- TPTI-09-09: HP OpenView NNM ovsessionmgr.exe userid/passwd Heap Overflow Vulnerability
- TPTI-09-10: HP OpenView NNM webappmon.exe CGI Host Header Buffer Overflow Vulnerability
- TPTI-09-11: HP OpenView NNM OvWebHelp.exe CGI Topic Heap Overflow Vulnerability
- TPTI-09-12: HP OpenView NNM ovalarm.exe CGI Accept-Language Stack Overflow Vulnerability
- TPTI-09-13: HP OpenView NNM snmpviewer.exe CGI Host Header Stack Overflow Vulnerability
- TPTI-09-14: HP OpenView NNM ovwebsnmpsrv.exe OVwSelection Stack Overflow Vulnerability
- [ MDVSA-2009:030-1 ] amarok
- ZDI-09-098: Symantec Multiple Products VRTSweb.exe Remote Code Execution Vulnerability
- CA20091208-01: Security Notice for CA Service Desk
- iDefense Security Advisory 12.08.09: Microsoft Internet Explorer HTML Layout Engine Uninitialized Memory Vulnerability
- iDefense Security Advisory 12.08.09: Microsoft WordPad Word97 Converter Integer Overflow Vulnerability
- iDefense Security Advisory 12.08.09: Microsoft Windows Indeo32 Codec Parsing Heap Corruption Vulnerability
- RE: Millions of PDF invisibly embedded with your internal disk paths
- From: Thor (Hammer of God)
- CORE-2009-1013: Multiple XSS and Injection Vulnerabilities in TestLink Test Management and Execution System
- From: CORE Security Technologies Advisories
- [security bulletin] HPSBUX02480 SSRT090253 rev.1 - HP-UX Running VRTSweb, Remote Execution of Arbitrary Code, Increase of Privilege
- [USN-869-1] Linux kernel vulnerabilities
- [ MDVSA-2009:329 ] kernel
- [security bulletin] HPSBMA02483 SSRT090257 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [security bulletin] HPSBMA02477 SSRT090177 rev.3 - HP OpenView Network Node Manager (OV NNM), Remote Denial of Service (DoS)
- [ MDVSA-2009:330 ] kdelibs
- [ MDVSA-2009:331 ] kdegraphics
- [USN-870-1] PyGreSQL vulnerability
- [USN-871-1] KDE vulnerability
- [USN-871-2] KDE 4 vulnerabilities
- E-Store SQL Injection Vulnerability
- From: Salvatore Fresta aka Drosophila
- Digital Scribe 1.4.1 Multiple SQL Injection Vulnerabilities
- From: Salvatore Fresta aka Drosophila
- [USN-872-1] KDE 4 Runtime vulnerabilities
- Re: TLS / SSLv3 vulnerability explained (New ways to leverage the vulnerability)
- [ MDVSA-2009:332 ] gimp
- [security bulletin] HPSBMA02400 SSRT080144 rev.3 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- phpCollegeExchange 0.1.5c Multiple SQL Injection Vulnerabilities
- From: Salvatore Fresta aka Drosophila
- [security bulletin] HPSBMA02424 SSRT080125 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [security bulletin] HPSBMA02425 SSRT080091 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [security bulletin] HPSBPI02472 SSRT090196 rev.2 - Certain HP Color LaserJet Printers, Remote Unauthorized Access to Data, Denial of Service
- [security bulletin] HPSBMA02483 SSRT090257 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [ MDVSA-2009:296-1 ] gimp
- Flock 2.5.2 Remote Array Overrun (Arbitrary code execution)
- Camino 1.6.10 Remote Array Overrun (Arbitrary code execution)
- [ MDVSA-2009:259-1 ] snort
- Hacktics Advisory Dec09: Oracle eBusiness Suite - Multiple Vulnerabilities Allow Remote Takeover
- [SECURITY] [DSA 1949-1] New php-net-ping packages fix arbitrary code execution
- Zabbix Server : Multiple remote vulnerabilities
- Loggix Project <= 9.4.5 Multiple Remote File Inclusion Vulnerabilities
- Miniweb 2.0 Full Path Disclosure
- From: Salvatore Fresta aka Drosophila
- WX Guest Book 1.1.208 (SQL/XSS) Multiple Remote Vulnerabilities
- Re: E-Store SQL Injection Vulnerability
- B2C Booking Centre Systems - SQL Injection Vulnerability
- From: Salvatore Fresta aka Drosophila
- Re: IPB v2.x up to 3.0.4 XSS vulnerability
- Cross-Site Scripting vulnerabilities in Invision Power Board
- EEGshop v1.2
- Monkey HTTPd improper input validation vulnerability
- From: Patroklos Argyroudis
- [SECURITY] [DSA-1950-1] New webkit packages fix several vulnerabilities
- DC4420 - London DEFCON - Christmas drinks - Wednesday 16th December
- Zabbix Agent : Bypass of EnableRemoteCommands=0
- [security bulletin] HPSBUX02409 SSRT080171 rev.3 - HP-UX Running VERITAS File System (VRTSvxfs) or VERITAS Oracle Disk
- Exposing HMS HICP Protocol + Intellicom NetBiterConfig.exe Remote Buffer Overflow (Not patched)
- [security bulletin] HPSBUX02482 SSRT090249 rev.2 - HP-UX Running OpenSSL, Remote Unauthorized Data Injection, Denial of Service (DoS)
- Re: WX Guest Book 1.1.208 (SQL/XSS) Multiple Remote Vulnerabilities
- WSCreator 1.1 Blind SQL Injection
- From: Salvatore Fresta aka Drosophila
- APC Switched Rack PDU XSS Vulnerability
- [SECURITY] [DSA 1951-1] New firefox-sage packages fix insufficient input sanitizing
- Trango Broadband Wireless Rogue SU Authentication Bug
- [SECURITY] [DSA 1952-2] End-of-life announcement for asterisk in oldstable
- [SECURITY] [DSA 1952-1] New asterisk packages fix several vulnerabilities
- Daloradius XSS Vulnerability
- [BMSA-2009-08] Multiple Vulnerabilities in PyForum
- [scip-Advisory 4063] PasswordManager Pro 6.1 Script Injection Vulnerability
- [ MDVSA-2009:333 ] postgresql
- VMSA-2009-0017 VMware vCenter, ESX patch and vCenter Lab Manager releases address cross-site scripting issues
- From: VMware Security Team
- [SECURITY] [DSA-1953-1] New expat packages fix denial of service
- FW: [Full-disclosure] File Access Vulnerability in Easy File Sharing Web Server
- From: Thor (Hammer of God)
- [ISecAuditors Security Advisories] WP-Forum <= 2.3 SQL Injection vulnerabilities
- From: ISecAuditors Security Advisories
- Family Connections <= 2.1.3 Multiple Remote Vulnerabilities
- From: Salvatore Fresta aka Drosophila
- File Access Vulnerability in Easy File Sharing Web Server
- From: Thor (Hammer of God)
- [SECURITY] [DSA 1954-1] New cacti packages fix insufficient input sanitising
- VideoCache 1.9.2 vccleaner root vulnerability
- Kaspersky Lab Multiple Products Local Privilege Escalation Vulnerability
- [security bulletin] HPSBMA02416 SSRT090008 rev.4 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [SECURITY] [DSA 1955-1] New network-manager/network-manager-applet packages fix information disclosure
- {PRL} QuickHeal antivirus 2010 Local Privilege Escalation
- From: Protek Research Lab
- Cisco Security Advisory: Multiple Cisco WebEx WRF Player Vulnerabilities
- From: Cisco Systems Product Security Incident Response Team
- rPSA-2009-0161-1 hwdata kernel
- From: rPath Update Announcements
- [SECURITY] [DSA 1956-1] New xulrunner packages fix several vulnerabilities
- [security bulletin] HPSBMA02252 SSRT061258, SSRT061259 rev.1 - HP OpenView Storage Data Protector, Remote Arbitrary Code Execution
- Secunia Research: Winamp Impulse Tracker Instrument Parsing Buffer Overflows
- [ MDVSA-2009:334 ] poppler
- Secunia Research: Winamp Ultratracker File Parsing Buffer Overflow
- SEC Consult SA-20091217-0 :: Authentication bypass and file manipulation in Sitecore Staging Module
- Secunia Research: Winamp Impulse Tracker Sample Parsing Buffer Overflow
- Secunia Research: Winamp Oktalyzer Parsing Integer Overflow Vulnerability
- [ISecAuditors Security Advisories] Cisco ASA <= 8.x VPN SSL module Clientless URL-list control bypass
- From: ISecAuditors Security Advisories
- [ISecAuditors Security Advisories] Horde 3.3.5 "PHP_SELF" Cross-Site Scripting vulnerability
- From: ISecAuditors Security Advisories
- VUPEN Security Research - Winamp PNG and JPEG Data Integer Overflow Vulnerabilities
- From: VUPEN Security Research
- [ISecAuditors Security Advisories] QuiXplorer <=2.4.1beta Remote Code Execution vulnerability
- From: ISecAuditors Security Advisories
- [ MDVSA-2009:335 ] ffmpeg
- [Suspected Spam][oCERT-2009-019] Ganeti path sanitization errors
- Rumba XML XSS vulnerability
- Campus Party Eu 2010 Security Challenge - Call For Participants
- From: Campus Party EU Spain
- ZDI-09-099: Hewlett-Packard OpenView Data Protector Backup Client Service Buffer Overflow Vulnerability
- TPTI-09-15: HP OpenView Data Protector Cell Manager Heap Overflow Vulnerability
- Re: Powered By Dvbbs Version 7.1.0 Sp1 By Pass
- [ MDVSA-2009:336 ] koffice
- [ISecAuditors Security Advisories] Simple PHP Blog <= 0.5.1 Local File Include vulnerability
- From: ISecAuditors Security Advisories
- [ISecAuditors Security Advisories] PHP-Calendar <= v1.1 'configfile' Remote and Local File Inclusion vulnerability
- From: ISecAuditors Security Advisories
- [USN-875-1] Red Hat Cluster Suite vulnerabilities
- SMF (Simple Machine Forum) 1.1.11 XSS - Discovered by : Khashayar Fereidani
- [USN-873-1] Firefox 3.0 and Xulrunner 1.9 vulnerabilities
- [USN-874-1] Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
- [SECURITY] [DSA-1959-1] New ganeti packages fix arbitrary command execution
- [SECURITY] [DSA 1960-1] New acpid packages fix weak file permissions
- [ GLSA 200912-02 ] Ruby on Rails: Multiple vulnerabilities
- phpPollScript - 1.3 Remote File Include
- pragmaMx CMS Blind SQL/XPath Injection vulnerability
- TLS Renegotiation Vulnerability: Proof of Concept Code (Python)
- From: RedTeam Pentesting GmbH
- SQL-Ledger – several vulnerabilities
- ClarkConnect XSS vulnerability
- Re: phpPollScript - 1.3 Remote File Include
- [ MDVSA-2009:337 ] proftpd
- Remote Buffer Overflow Exploit (TFTP Daemon Version 1.9) by Socket_0x03
- [security bulletin] HPSBUX02498 SSRT090264 rev.1 - HP-UX Running Apache, Remote Unauthorized Data Injection, Denial of
- RE: TLS Renegotiation Vulnerability: Proof of Concept Code (Python)
- From: Barry Raveendran Greene
- [ MDVSA-2009:338 ] firefox
- [ MDVSA-2009:339 ] firefox
- [SECURITY] [DSA 1961-1] New bind9 packages fix cache poisoning
- [SECURITY] [DSA-1962-1] New kvm packages fix several vulnerabilities
- XSS Vulnerability in JpGraph 3.0.6
- RE: TLS Renegotiation Vulnerability: Proof of Concept Code (Python)
- Vulnerability in Joomulus for Joomla
- ClubHack2009 presentations are now online
- Remote Buffer Overflow Exploit (TFTP Daemon Version 1.9) by Socket_0x03
- [ MDVSA-2009:340 ] jpgraph
- Microsoft IIS 0Day Vulnerability in Parsing Files (semi-colon bug)
- [ MDVSA-2009:341 ] dstat
- [SECURITY] [DSA 1963-1] New unbound packages fix DNSSEC validation
- [tools] hostmap-0.2.1 released
- [ MDVSA-2009:342 ] acpid
- [ MDVSA-2009:343 ] acpid
- [InterN0T] LiveZilla - XSS Vulnerability
- DBHCMS Web Content Management System v1.1.4 RFI Vulnerability
- Sheedravi CMS SQL Injection Vulnerability
- [SECURITY] [DSA 1957-1] New aria2 packages fix arbitrary code execution
- [ MDVSA-2009:244-1 ] xfig
- [ MDVSA-2009:344 ] perl-DBD-Pg
- Code to mitigate IIS semicolon zero-day
- [ MDVSA-2009:189-1 ] apache-mod_auth_mysql
- MITKRB5-SA-2009-003 [CVE-2009-3295] KDC denial of service in cross-realm referral processing
- [ MDVSA-2009:146-1 ] imap
- Tests about semicolon zero-day (BID 37460)
- [ MDVSA-2009:345 ] acl
- FreeWebshop.org: multiple vulnerabilities
- From: Akita Software Security
- Secunia Research: AproxEngine Multiple Vulnerabilities
- RE: Tests about semicolon zero-day (BID 37460)
- [SECURITY] [DSA 1958-1] New libtool packages fix privilege escalation
- RE: Tests about semicolon zero-day (BID 37460)
- Re: RE: Tests about semicolon zero-day (BID 37460)
- [ MDVSA-2009:346 ] kde
Mail converted by MHonArc