[Full-disclosure] Anand A has sent you a private message

2009-04-28 Thread Anand A
Title: Private Message from Anand Anand A has sent you a private message Click to read messagePlease read it or Anand will think you ignored this :( This message has been forwarded at the request of aanan...@gmail.com. To block all emails from FanIQ, please click here. FanIQ is

Re: [Full-disclosure] full disclosure?

2009-04-28 Thread Juha-Matti Laurio
If posting to CVE and NVD handlers at the same time it's a good advice to use BCC... Juha-Matti sunjester [tripmons...@gmail.com] wrote: this is in regards to... Message: 1 Date: Mon, 27 Apr 2009 16:39:32 +0200 From: Thierry Zoller thie...@zoller.lu Subject: [Full-disclosure]

Re: [Full-disclosure] Anand A has sent you a private message

2009-04-28 Thread James Matthews
I love you too! On Tue, Apr 28, 2009 at 12:12 PM, Anand A nore...@ci.faniq.com wrote: [image: FanIQ] http://FanIQ.com/user/aanand01/connect/247743246 Anand A has sent you a private message Click to read messagehttp://FanIQ.com/user/aanand01/conne%0A+ct/247743246 [image: Read private

[Full-disclosure] DDIVRT-2009-24 Precidia Ether232 Memory Corruption

2009-04-28 Thread DDI_Vulnerability_Alert
Title - DDIVRT-2009-24 Precidia Ether232 Memory Corruption Severity Medium Date Discovered --- March 10th, 2009 Discovered By - Digital Defense, Inc. Vulnerability Research Team Credit: Steven James and princeofnigeria and r...@b13$

[Full-disclosure] Secunia Research: HP OpenView Network Node Manager ovalarmsrv Integer Overflow

2009-04-28 Thread Secunia Research
== Secunia Research 28/04/2009 - HP OpenView Network Node Manager ovalarmsrv Integer Overflow - == Table of Contents Affected

[Full-disclosure] Errata: [TZO-13-2009] Avira Antivir generic CAB evasion / bypass

2009-04-28 Thread Thierry Zoller
Errata: BID/CVE : The issue was in ZIP and not CAB archive handling. Thank you for your understanding. Regards, Thierry ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by

[Full-disclosure] one shot remote root for linux?

2009-04-28 Thread Gadi Evron
Sometimes news finds us in mysterious yet obvious ways. HD set a status which I noticed on my twitter: @hdmoore reading through sctp_houdini.c - one-shot remote linux kernel root - http://kernelbof.blogspot.com/ I asked him about it on IM, wondering if it is real: looks like that but requires a

Re: [Full-disclosure] one shot remote root for linux?

2009-04-28 Thread cardiac_arrest
Possibly the most pointless post Gadi has ever made (which is quite a feat by the incredibly high standards he sets himself). Gadi, please die of swine flu. CA 2009/4/28 Gadi Evron g...@linuxbox.org Sometimes news finds us in mysterious yet obvious ways. HD set a status which I

[Full-disclosure] [SECURITY] [DSA 1780-1] New libdbd-pg-perl packages fix potential code execution

2009-04-28 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1780-1 secur...@debian.org http://www.debian.org/security/ Florian Weimer April 28, 2009

[Full-disclosure] [USN-765-1] Firefox and Xulrunner vulnerabilities

2009-04-28 Thread Jamie Strandboge
=== Ubuntu Security Notice USN-765-1 April 28, 2009 firefox-3.0, xulrunner-1.9 vulnerabilities CVE-2009-1313 === A security issue affects the following Ubuntu releases:

[Full-disclosure] iDefense Security Advisory 04.28.09: TIBCO SmartSockets Stack Buffer Overflow Vulnerability

2009-04-28 Thread iDefense Labs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 iDefense Security Advisory 04.28.09 http://labs.idefense.com/intelligence/vulnerabilities/ Apr 28, 2009 I. BACKGROUND SmartSockets is a message-passing framework used to transport messages over disparate channels. The RTserver is the server

[Full-disclosure] Positron Security Advisory #2009-001: Memcached and MemcacheDB ASLR Bypass Weakness

2009-04-28 Thread Positron Security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 POSITRON SECURITY LLC http://www.positronsecurity.com/ Security Advisory #2009-001 Memcached and MemcacheDB ASLR Bypass Weakness Author: Joe Testa jt _at_sign_

[Full-disclosure] [ MDVSA-2009:101 ] xpdf

2009-04-28 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2009:101 http://www.mandriva.com/security/

[Full-disclosure] [ MDVA-2009:057 ] usermode

2009-04-28 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVA-2009:057 http://www.mandriva.com/security/