stdin
By Subject
283 messages sorted by:
[ author ]
[ date ]
[ thread ]
Starting: Fri Aug 01 2008 - 17:42:20 EEST
Ending: Sat Aug 30 2008 - 21:36:32 EEST
- 8e6 Technologies R3000 Internet Filter Bypass with Host Decoy
- [ GLSA 200807-16 ] Python: Multiple vulnerabilities
- [ GLSA 200808-01 ] xine-lib: User-assisted execution of arbitrary code
- [ GLSA 200808-02 ] Net-SNMP: Multiple vulnerabilities
- [ GLSA 200808-03 ] Mozilla products: Multiple vulnerabilities
- [ GLSA 200808-04 ] Wireshark: Denial of Service
- [ GLSA 200808-05 ] ISC DHCP: Denial of Service
- [ GLSA 200808-06 ] libxslt: Execution of arbitrary code
- [ GLSA 200808-07 ] ClamAV: Multiple Denials of Service
- [ GLSA 200808-08 ] stunnel: Security bypass
- [ GLSA 200808-09 ] OpenLDAP: Denial of Service vulnerability
- [ GLSA 200808-10 ] Adobe Reader: User-assisted execution of arbitrary code
- [ GLSA 200808-11 ] UUDeview: Insecure temporary file creation
- [ GLSA 200808-12 ] Postfix: Local privilege escalation vulnerability
- [ MDVSA-2008:160 ] libxslt
- [ MDVSA-2008:161 ] rxvt
- [ MDVSA-2008:162 ] qemu
- [ MDVSA-2008:163 ] python
- [ MDVSA-2008:164 ] python
- [ MDVSA-2008:166 ] clamav
- [ MDVSA-2008:167 ] kernel
- [ MDVSA-2008:168 ] stunnel
- [ MDVSA-2008:169 ] hplip
- [ MDVSA-2008:170 ] cups
- [ MDVSA-2008:171 ] postfix
- [ MDVSA-2008:172 ] amarok
- [ MDVSA-2008:173 ] kdegraphics
- [ MDVSA-2008:174 ] kernel
- [ MDVSA-2008:175 ] yelp
- [ MDVSA-2008:176 ] mtr
- [ MDVSA-2008:177 ] xine-lib
- [ MDVSA-2008:178 ] xine-lib
- [ MDVSA-2008:179 ] metisse
- [ MDVSA-2008:180 ] libxml2
- [ MDVSA-2008:180-1 ] libxml2
- [ MDVSA-2008:181 ] ipsec-tools
- [Advisory] Invision Power Board <= 2.3.5 Multiple Vulnerabilities and Security Bypass
- [AJECT] hMailServer 4.4.1 DoS vulnerability
- [AJECT] NoticeWare IMAP Email Server 4.6.2 DoS vulnerability
- [AJECT] WinGate Email Server (IMAP) vulnerability
- [CVE-2008-1232] Apache Tomcat XSS vulnerability
- [CVE-2008-2370] Apache Tomcat information disclosure vulnerability
- [DSECRG-08-035] Local File Include Vulnerability in Gallery 1.5.7, 1.6-alpha3
- [DSECRG-08-036] Multiple Security Vulnerabilities in Freeway eCommerce 1.4.1.171
- [DSECRG-08-037] Multiple Local File Include Vulnerabilities in Pluck CMS 4.5.2
- [DSECRG-08-038] Multiple Local File Include Vulnerabilities in ezContents CMS 2.0.3
- [Exploit] Invision Power Board <= 2.3.5 Multiple Vulnerabilities
- [Full-disclosure] [funsec] facebook messages worm
- [funsec] facebook messages worm
- [funsec] Internet attacks against Georgian web sites
- [IVIZ-08-002] Hewlett-Packard BIOS Plain Text Password Disclosure
- [IVIZ-08-003] TrueCrypt Security Model bypass exploiting wrong BIOS API usage
- [IVIZ-08-004] Intel BIOS Plain Text Password Disclosure
- [IVIZ-08-005] IBM Lenovo BIOS Plain Text Password Disclosure
- [IVIZ-08-006] DiskCryptor Security Model bypass exploiting wrong BIOS API usage
- [IVIZ-08-007] DriveCrypt Security Model bypass exploiting wrong BIOS API usage
- [IVIZ-08-008] LILO Security Model bypass exploiting wrong BIOS API usage
- [IVIZ-08-009] Grub Legacy Security Model bypass exploiting wrong BIOS API usage
- [oCERT-2008-008] multiple heap overflows in xine-lib
- [OpenID] OpenID/Debian PRNG/DNS Cache poisoning advisory
- [scip_Advisory 3807] Dreambox DM500 webserver long URL request denial of service
- [SE-2008-01] J2ME Security Vulnerabilities 2008
- [security bulletin] HPSBMA02345 SSRT080039 rev.2 - HP System Management Homepage (SMH) for Linux and Windows, Remote Cross Site Scripting (XSS)
- [security bulletin] HPSBMA02363 SSRT080106 rev.1 - HP Enterprise Discovery Running on Windows, Remote Authorized User, Gain Extended Privileges
- [security bulletin] HPSBOV02357 SSRT080058 rev.1 - HP OpenVMS TCP/IP Services running BIND, Remote DNS Cache Poisoning
- [security bulletin] HPSBST02360 SSRT080117 rev.2 - Storage Management Appliance (SMA), Microsoft Patch Applicability MS08-041 to MS08-051
- [security bulletin] HPSBTU02358 SSRT080058 rev.1 - HP Tru64 UNIX running BIND, Remote DNS Cache Poisoning
- [security bulletin] HPSBUX02351 SSRT080058 rev.3 - HP-UX Running BIND, Remote DNS Cache Poisoning
- [security bulletin] HPSBUX02351 SSRT080058 rev.4 - HP-UX Running BIND, Remote DNS Cache Poisoning
- [security bulletin] HPSBUX02355 SSRT080023 rev.1 - HP-UX Using libc, Remote Denial of Service (DoS)
- [security bulletin] HPSBUX02356 SSRT080051 rev.1 - HP-UX Running ftpd, Remote Privileged Access
- [security bulletin] HPSBUX02365 SSRT080118 rev.1 - HP-UX Running Apache, Remote Cross Site Scripting (XSS) or Denial of Service (DoS)
- [SECURITY] [DSA 1625-1] New cupsys packages fix arbitrary code execution
- [SECURITY] [DSA 1626-1] New httrack packages fix arbitrary code execution
- [SECURITY] [DSA 1627-1] New opensc packages fix smart card vulnerability
- [SECURITY] [DSA 1627-1] New PowerDNS packages reduce DNS spoofing risk
- [SECURITY] [DSA 1629-1] New postfix packages fix privilege escalation
- [SECURITY] [DSA 1629-2] New postfix packages fix installability problem on i386
- [SECURITY] [DSA 1630-1] New Linux 2.6.18 packages fix several vulnerabilities
- [SECURITY] [DSA 1631-1] New libxml2 packages fix denial of service
- [SECURITY] [DSA 1632-1] New tiff packages fix arbitrary code execution
- [SECURITY] [DSA-1597-2] New mt-daapd package fix regression
- [TKADV2008-006] CA HIPS KmxFw.sys Kernel Memory Corruption
- [USN-626-2] Devhelp, Epiphany, Midbrowser and Yelp update
- [USN-632-1] Python vulnerabilities
- [USN-633-1] libxslt vulnerabilities
- [USN-634-1] OpenLDAP vulnerability
- [USN-635-1] xine-lib vulnerabilities
- [USN-636-1] Postfix vulnerability
- [USN-638-1] Yelp vulnerability
- Apache HTTP Server mod_proxy_ftp Wildcard Characters Cross-Site Scripting
- Apache Tomcat <= 6.0.18 UTF8 Directory Traversal Vulnerability
- Apple OSX Leopard (10.5+), inadequate ACL insight can create vuln
- Arbitrary Code Execution in Commands: K, Control-], g]
- CA ARCserve Backup for Laptops and Desktops Server LGServer Service Vulnerability
- CA Host-Based Intrusion Prevention System SDK kmxfw.sys Multiple Vulnerabilities
- CA Products That Embed Ingres Multiple Vulnerabilities
- Call For Papers - Hackers 2 Hackers Conference 5th Edition - Brazil
- Cisco Security Advisory: Vulnerability in Cisco WebEx Meeting Manager ActiveX Control
- Contest: Best Advances for OpenVAS Network Vulnerability Tests
- CORE-2008-0103: Internet Explorer Zone Elevation Restrictions Bypass and Security Zone Restrictions Bypass
- CORE-2008-0624: Anzio Web Print Object Buffer Overflow
- CORE-2008-0716 - Sun xVM VirtualBox Privilege Escalation Vulnerability
- CORE-2008-0813 - vBulletin Cross Site Scripting Vulnerability
- Crafty Syntax Live Help <= 2.14.6 SQL Injection
- DNS Multiple Race Exploiting Tool
- e107 <= 0.7.11 Arbitrary Variable Overwriting
- Endless loop and resources consumption in Halo 1.0.7.0615
- eVision 2.0 Sql Injection/Remote File Disclosure/Remote File Upload/IG
- facebook messages worm
- Fedora confirms: Our servers were breached
- file upload exploit
- FlexCMS <= 2.5 Cross Site Scripting Vulnerability
- Folder Lock <= 5.9.5 Local Password Information Disclosure
- Google Notebook and Google Bookmarks Cross Site Scripting Vulnerabilities
- Homes 4 Sale Remote XSS Vulnerabilitiy
- Hopeless comments regarding the pointless "HP System Management Homepage (SMH) Unspecified XSS"
- how to request a cve id?
- iDefense Security Advisory 07.31.08: Apple Mac OS X CoreGraphics PDF Type1 Font Integer Overflow Vulnerability
- iDefense Security Advisory 08.01.08: Ingres Database for Linux ingvalidpw Untrusted Library Path Vulnerability
- iDefense Security Advisory 08.01.08: Ingres Database for Linux libbecompat Stack Based Buffer Overflow Vulnerability
- iDefense Security Advisory 08.01.08: Ingres Database for Linux verifydb Insecure File Permissions Modification Vulnerability
- iDefense Security Advisory 08.04.08: Solaris snoop SMB Decoding Multiple Format String Vulnerabilities
- iDefense Security Advisory 08.04.08: Solaris snoop SMB Decoding Multiple Stack Buffer Overflow Vulnerabilities
- iDefense Security Advisory 08.12.08: Microsoft Excel Chart AxesSet Invalid Array Index Vulnerability
- iDefense Security Advisory 08.12.08: Microsoft Excel FORMAT Record Invalid Array Index Vulnerability
- iDefense Security Advisory 08.12.08: Microsoft Office BMP Input Filter Heap Overflow Vulnerability
- iDefense Security Advisory 08.12.08: Microsoft Office WPG Image File Heap Buffer Overflow Vulnerability
- iDefense Security Advisory 08.12.08: Microsoft PowerPoint Viewer 2003 Cstring Integer Overflow Vulnerability
- iDefense Security Advisory 08.12.08: Microsoft PowerPoint Viewer 2003 Out of Bounds Array Index Vulnerability
- iDefense Security Advisory 08.12.08: Microsoft Windows Color Management Module Heap Buffer Overflow Vulnerability
- IGES CMS <=2.0 Multiple Vulnerabilities
- IMF 2008 - Call for Participation
- Interesting things at sec-consult.com, DNS-whitepaper available tomorrow
- Internet attacks against Georgian web sites
- K-Links Directory Blind SQL Injection Exploit
- Kayako SupportSuite < 3.30.00 Multiple Vulnerabilities
- Keld: PHP-MySQL News Script 0.7.1 Remote SQL injection Vulnerability
- key blacklisting & file size (was: OpenID/Debian PRNG/DNS Cache poisoning advisory)
- Layered Defense Research Advisory: Alcatel-Lucent OmniSwitch products, Stack Buffer Overflow
- libxslt heap overflow
- Mambo 4.6.2 Full Version - Multiple Cross Site Scripting - By Khashayar Fereidani
- ManageEngine Firewall Analyzer arbitrary file disclosure to authorized user
- Microsoft Windows Messenger Remote Illegal Access Vulnerability
- MicroWorld MailScan - Multiple Vulnerabilities within Admin-Webinterface
- Mini-NUKE v2.3 Freehost (tr) Multiple Remote SQL Injection Vulnerabilities
- Multiple Vulnerabilities in AWStats Totals
- munky-bliki lfi
- MyClan Sql Injection
- n.runs-SA-2008.005 - Apple Inc. - CoreSevices Framework’s CarbonCore Framework - Arbtrary Code Execution (remote
- New paper: An Illustrated Guide to the Kaminsky DNS Vulnerability
- NewsHOWLER 1.03 Beta Cookie Handling Via Sql injection
- Nokia 6131 NFC URI/URL Spoofing and DoS Advisory
- Null Byte Local file Inclusion in FAR - PHP Project version:1.0
- NULL pointer in Ventrilo 3.0.2
- OneNews Beta 2 Multiple Vulnerabilities
- OpenID/Debian PRNG/DNS Cache poisoning advisory
- OpenVMS fingerd remote stack overflow
- Ovidentia 6.6.5 XSS (index.php)‏
- Ovidentia Sql Injection
- PacSec 2008 CFP (Deadline Sept. 1, Conference Nov. 12/13) and BA-Con 2008 Speakers (Sept .30/ Oct. 1)
- PHP Live Helper <= 2.0.1 Multiple Vulnerabilities
- PHP-NUKE module Kleinanzeigen SQL injection (lid)
- Pligg Auto-Voter Using XSS to Bypass CSRF Protection
- Plogger <= 3.0 SQL Injection
- Pluck 4.5.2 Multiple Cross Site Scripting Vulnerabilities
- Postfix local privilege escalation via hardlinked symlinks
- PR08-20: Bypassing ASP .NET "ValidateRequest" for Script Injection Attacks
- reviving the botnets@ mailing list: a new statregy in fighting cyber crime
- rPSA-2008-0243-1 idle python
- rPSA-2008-0245-1 cups
- rPSA-2008-0246-1 gaim
- rPSA-2008-0247-1 gvim vim vim-minimal
- rPSA-2008-0249-1 openldap openldap-clients openldap-servers
- rPSA-2008-0253-1 git gitweb
- rPSA-2008-0255-1 freetype
- rPSA-2008-0259-1 postfix
- SECOBJADV-2008-03.2: PartyGaming PartyPoker Malicious Update Vulnerability
- Secunia Research: Calendarix Basic Two SQL Injection Vulnerabilities
- Secunia Research: Novell iPrint Client ActiveX Control "GetFileList()" Information Disclosure
- Secunia Research: Novell iPrint Client ActiveX Control Multiple Buffer Overflows
- Secunia Research: Trend Micro Products Web Management Authentication Bypass
- Security Assessment of the Internet Protocol
- SecurityFocus Linux Newsletter #401
- SecurityFocus Linux Newsletter #402
- SecurityFocus Linux Newsletter #403
- SecurityFocus Linux Newsletter #404
- SecurityFocus Microsoft Newsletter #406
- SecurityFocus Microsoft Newsletter #407
- SecurityFocus Microsoft Newsletter #408
- SecurityFocus Microsoft Newsletter #409
- SecurityFocus Newsletter #465
- SecurityFocus Newsletter #466
- SecurityFocus Newsletter #467
- SecurityFocus Newsletter #468
- Server termination in America's Army 2.8.3.1
- SunShop <= 4.1.4 SQL Injection
- Surf Jack - HTTPS will not save you
- SYM08-015_SFW_SecurityUpdateBypass
- Team SHATTER Security Advisory: Cross-site scripting in Oracle Enterprise Manager (REFRESHCHOICE Parameter)
- Team SHATTER Security Advisory: SQL Injection in Oracle Application Server (WWEXP_API_ENGINE)
- Team SHATTER Security Advisory: SQL Injection in Oracle Database (DBMS_DEFER_SYS.DELETE_TRAN)
- TGS CMS Remote Code Execution Exploit
- TimeTrex Time and Attendance Cookie Theft
- Tool: PorkBind v1.3 Nameserver Security Scanner (New Version)
- ToorCon 10 Call For Papers
- ToorCon X CFP Closing and Workshops and Seminars discounted until Friday!
- UNAK-CMS Lfi
- UPDATE: [ GLSA 200804-22 ] PowerDNS Recursor: DNS Cache Poisoning
- Vanilla <= 1.1.4 Script Injection/ XSS
- Vim 7.2c.002 Fixes Arbitrary Command Execution when Handling Tar Archives
- Vim: Arbitrary Code Execution in Commands: K, Control-], g]
- Vim: Netrw: FTP User Name and Password Disclosure
- Vim: Unfixed Vulnerabilities in Tar Plugin Version 20
- VMSA-2008-0012 Updated VirtualCenter addresses User Account Disclosure Vulnerability
- VMSA-2008-0013 Updated ESX packages for OpenSSL, net-snmp, perl
- VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues.
- White Wolf Labs #080826-1: Kyocera Mita Scanner File Utility (Multiple)
- Whitepaper: DNS zone redelegation
- Windows Vista Power Management & Local Security Policy
- Xampp Linux 1.6.7 Multiple Cross Site Scripting Vulnerabilities
- XSS and Data Manipulation attacks found in CMS PHPCart.
- ZDI-08-048: Microsoft Excel COUNTRY Record Memory Corruption Vulnerability
- ZDI-08-049: Microsoft Windows Graphics Rendering Engine PICT Heap Corruption
- ZDI-08-050: Microsoft Internet Explorer XHTML Rendering Memory Corruption Vulnerability
- ZDI-08-051: Microsoft Internet Explorer Table Layout Memory Corruption Vulnerability
- ZDI-08-053: Symantec Veritas Storage Foundation Scheduler Service NULL Session Authentication Bypass Vulnerability
- ZDI-08-054: Multiple Vendor libpurple MSN Protocol SLP Message Heap Overflow Vulnerability
- ZoneMinder Multiple Vulnerabilities
Last message date: Sat Aug 30 2008 - 21:36:32 EEST
Archived on: Sat Aug 30 2008 - 21:36:32 EEST
283 messages sorted by:
[ author ]
[ date ]
[ thread ]
This archive was generated by hypermail 2b28
: Sat Aug 30 2008 - 21:36:32 EEST