[Suspected Spam]Security Assessment of the Internet Protocol the IETF

2009-01-06 Thread Fernando Gont
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Folks, In August 2008 the UK CPNI (United Kingdom's Centre for the Protection of National Infrastructure) published the document Security Assessment of the Internet Protocol. The motivation of the aforementioned document is explained in the

[SECURITY] [DSA 1694-2] New xterm packages fix regression

2009-01-06 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1694-2 secur...@debian.org http://www.debian.org/security/ Florian Weimer January 06, 2009

Re: php 4.x php5.2.x all show_source() ,highlight_file() bypass#8207;

2009-01-06 Thread Slack Traq
There is no bug so no exploit can exist. File /etc/passwd is readable by any user (inside PHP with safe_mode disabled also) as it doesn't contain very sensitive information such as user passwords. Double check what are you posting before actually doing it please. Regards --- On Sun, 1/4/09,

New WHID web hacking incidents

2009-01-06 Thread Ofer Shezaf
After a way too long negligence, I am updating again the Web Hacking Incidents Database (WHID). I hope to close the gap shortly in order to be able to issue the WHID 2008 report. One of the obstacle facing WHID was a lack of proper content management system forcing me to edit a lot of HTML to add

VUPLAYER BufferOver flow POC

2009-01-06 Thread alphanix00
#!/usr/bin/perl system(color 3); if (@ARGV != 1) { help; exit(); } sub help(){ print [X] Usage : ./exploit.pl filename \n; } { $file = $ARGV[0]; } print \n [X]***\n; print [X]VUPLAYER BufferOver flow POC *\n; print [X]Coded