Bugtraq: by author

153 messages starting Dec 03 96 and ending Dec 09 96
Date index | Thread index | Author index


Aaron Bornstein

Re: /bin/ksh sparc code Aaron Bornstein (Dec 03)

Adam Powers

Re: Weakness in some linux versions of adduser. Adam Powers (Dec 08)

Alan Brown

Re: Weakness in some linux versions of adduser. Alan Brown (Dec 08)

Alan Cox

Slow vendor response Alan Cox (Dec 20)
NFS/mountd minor bug Alan Cox (Dec 05)

Alec Muffett

ANNOUNCE: Crack v5.0a available... Alec Muffett (Dec 20)

Aleph One

HP Bug of the Week! Aleph One (Nov 30)
Re: CERT/AUCERT Aleph One (Dec 19)
NT vulnerable to attack on CPU Aleph One (Dec 19)
Other Folks Scripts Aleph One (Dec 09)
Security Survey Aleph One (Dec 20)
CERT Bashing, etc Aleph One (Dec 19)
jj cgi Aleph One (Dec 24)
the HP Bug of the Week! Aleph One (Dec 09)

Alfred Huger

Re: Bashing response teams Alfred Huger (Dec 22)

Andi Gutmans

Re: Problem with default slackware crontabs Andi Gutmans (Dec 25)

Antti Andreimann

Little feature/bug in RedHat Linux Antti Andreimann (Dec 01)

Apropos of Nothing

Vulnrability in test-cgi... Apropos of Nothing (Nov 30)
Re: CERT, CIAC, etc. unethical practices Apropos of Nothing (Dec 22)

Benedikt Stockebrand

Temporary Files (was Re: mktemp() and friends) Benedikt Stockebrand (Dec 25)
Re: mktemp() and friends Benedikt Stockebrand (Dec 23)

Bettina Fink

Re: denial of service attack on login Bettina Fink (Dec 10)

Bo

Linux: exploit for killmouse. Bo (Dec 14)
Re: Linux: killmouse/doom Bo (Dec 17)

Brian Mitchell

Re: NFS/mountd minor bug Brian Mitchell (Dec 05)

Bruce Evans

Re: FALSE ALARM: Re: Another buggy root cron job Bruce Evans (Dec 25)

Casper Dik

Re: sunos rlogin Casper Dik (Dec 05)
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Casper Dik (Dec 06)
Re: mktemp() and friends Casper Dik (Dec 24)

Catherine Allen

Re: CERT, CIAC, etc. and unethical practices Catherine Allen (Dec 22)

Chris Lavin

Re: CERT, CIAC, etc. and unethical practices Chris Lavin (Dec 22)

Chris Timmons

New INN security problems Chris Timmons (Dec 06)

Christopher Fraser

Security vulnerability in CERN httpd access protection Christopher Fraser (Dec 22)

d

Re: CIAC Bulletin H-13: IBM AIX(r) Security Vulnerabilities d (Dec 11)
Re: CERT, CIAC, etc. unethical practices d (Dec 22)
Re: CERT, CIAC, etc. and unethical practices d (Dec 21)

Darren Reed

Re: mktemp() and friends Darren Reed (Dec 23)
Re: mktemp() and friends Darren Reed (Dec 23)

Dave G.

Re: jj.c Dave G. (Dec 24)
Re: Linux login buffer overflow Dave G. (Dec 22)
cron jobs, vendors, /tmp madness, et al. Dave G. (Dec 24)
LINUX:/var/log/messages world readable Dave G. (Dec 10)
vixie-crontab for redhat linux Dave G. (Dec 15)

Dave Hayes

Re: ANNOUNCE: INN 1.5 Dave Hayes (Dec 05)

Dave Roberts

Users can modify routing in AIX 4.1 Dave Roberts (Dec 02)

David Crawford

CIAC Bulletin H-17: cron/crontab Buffer Overrun Vulnerabilities David Crawford (Dec 19)
CIAC Bulletin H-12: IBM AIX(r) 'SYN Flood' and 'Ping o' Death' David Crawford (Dec 11)
CIAC Bulletin H-13: IBM AIX(r) Security Vulnerabilities David Crawford (Dec 11)
CIAC Bulletin H-10: HP-UX Security Vulnerabilities David Crawford (Dec 06)

David Gersic

INW FTP server security hole David Gersic (Dec 17)

David LeBlanc

Re: (Fwd) RE: [NTSEC] Delete permissions on files David LeBlanc (Dec 06)

David Sacerdote

scanf overflow David Sacerdote (Dec 16)
Holes in default cron jobs David Sacerdote (Dec 23)

Dean Gaudet

Re: Irix: suid_exec hole Dean Gaudet (Dec 04)

der Mouse

Re: jj.c der Mouse (Dec 25)

D. J. Bernstein

Re: mktemp() and friends D. J. Bernstein (Dec 24)

Ed Arnold

Re: Vulnerability in test-cgi Ed Arnold (Dec 03)

Eivind Eklund

Re: L0pht Advisory: modstat Eivind Eklund (Dec 10)

Eric Allman

Re: sendmail 8.8.4 and initgroups (fwd) Eric Allman (Dec 13)
Re: sendmail 8.8.4 and initgroups (fwd) Eric Allman (Dec 13)

Erik M Pennebaker

More test-cgi Erik M Pennebaker (Dec 12)

Erik Troan

Re: vixie-crontab for redhat linux Erik Troan (Dec 16)

Evgene Ilyine

Re: Vulnerability in test-cgi Evgene Ilyine (Dec 17)
vixie cron intel BSD exploit code Evgene Ilyine (Dec 17)

Foowan

Irix NFS fun Foowan (Dec 05)

FreeBSD Security Officer

FreeBSD Security Advisory: FreeBSD-SA-96:20.stack-overflow FreeBSD Security Officer (Dec 17)
FreeBSD Security Advisory: FreeBSD-SA-96:18.lpr (REVISED) FreeBSD Security Officer (Dec 10)

Gene Spafford

Bashing response teams Gene Spafford (Dec 22)

Gilles Soulet

TCP bug on old Solaris box ? Gilles Soulet (Dec 20)

Hallam-Baker

Re: Security vulnerability in CERN httpd access protection Hallam-Baker (Dec 22)

*Hobbit*

[nph]test-cgi *Hobbit* (Dec 12)

itudps

Re: CERT/AUCERT itudps (Dec 19)

Jaechul Choe

Re: Irix: more suid fun/exploits Jaechul Choe (Dec 02)

Jake Ott

Re: Exploit for crontab bug (FreeBSD 2.1.0). Jake Ott (Dec 14)

James Brister

ANNOUNCE: INN 1.5.1 James Brister (Dec 17)

Jared Mauch

Re: Problem with default slackware crontabs Jared Mauch (Dec 24)

Jason R. Mastaler

Re: L0pht Advisory: modstat Jason R. Mastaler (Dec 10)

Javier Romeu

suid_exec Javier Romeu (Dec 06)

Jesus Altuve

Re: Vulnrability in test-cgi... Jesus Altuve (Dec 02)

Jim Dennis

Re: Possible Denial of Service: SSH Jim Dennis (Dec 18)
Re: Possible Denial of Service: SSH Jim Dennis (Dec 18)

Jody L. Baze

Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Jody L. Baze (Dec 05)

Joe Zbiciak

Re: Linux: exploit for killmouse. Joe Zbiciak (Dec 14)
Buffer overflow in Linux's login program Joe Zbiciak (Dec 22)
Re: Vulnerability in test-cgi Joe Zbiciak (Dec 03)
Re: Vulnrability in test-cgi... Joe Zbiciak (Dec 02)

Jon Snyder

Problem with default slackware crontabs Jon Snyder (Dec 24)
Re: Problem with default slackware crontabs, /tmp symlinks Jon Snyder (Dec 24)

Josh Richards

Security Advisory: HTTP/CGI Script Exploit Josh Richards (Dec 11)

Joshua Daymont

Re: CERT, CIAC, etc. and unethical practices Joshua Daymont (Dec 22)

Julian Assange

pw account suite patch typo Julian Assange (Dec 14)
vulnerability in new pw suite Julian Assange (Dec 14)

J Wunsch

Re: L0pht Advisory: modstat J Wunsch (Dec 11)

Kari E. Hurtta

Re: Irix: suid_exec hole Kari E. Hurtta (Dec 05)

Ken Cross

Re: (Fwd) RE: [NTSEC] Delete permissions on files Ken Cross (Dec 07)

Kevin L Prigge

Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Kevin L Prigge (Dec 05)
Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Kevin L Prigge (Dec 05)

Kichang Yang

/bin/ksh sparc code Kichang Yang (Dec 03)

Laurent FACQ

Re: [nph]test-cgi Laurent FACQ (Dec 16)

Leshka Zakharoff

Exploit for crontab bug (FreeBSD 2.1.0). Leshka Zakharoff (Dec 14)
Exploit for ppp bug (FreeBSD 2.1.0). Leshka Zakharoff (Dec 18)

Marc Slemko

Re: Problem with default slackware crontabs, /tmp symlinks Marc Slemko (Dec 24)

Mark Graff

Amended Bulletin (#137) Mark Graff (Dec 11)

Matt Power

Re: ANNOUNCE: INN 1.5 Matt Power (Dec 04)

Michael Douglass

sendmail 8.8.3 and DefaultUser and RunAsUser Michael Douglass (Dec 03)
sendmail 8.8.4 and initgroups Michael Douglass (Dec 11)
sendmail 8.8.4/initgroups--the way it ought to be Michael Douglass (Dec 11)

Mike Kienenberger

Re: CERT, CIAC, etc. unethical practices Mike Kienenberger (Dec 22)

M Shariful Anam

Re: More test-cgi M Shariful Anam (Dec 13)

Mycroft

CERT/AUCERT Mycroft (Dec 19)

Nathan Lawson

Re: TCP bug on old Solaris box ? Nathan Lawson (Dec 21)

Nikolai Matyushenko

Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Nikolai Matyushenko (Dec 06)

NuNO

denial of service attack on login NuNO (Dec 01)

Paul Ashton

Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul Ashton (Dec 06)

Paul B. Henson

Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul B. Henson (Dec 05)
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul B. Henson (Dec 05)
Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Paul B. Henson (Dec 06)

Pauline van Winsen - Uniq Professional Services

Re: sendmail 8.8.3 and DefaultUser and RunAsUser Pauline van Winsen - Uniq Professional Services (Dec 03)

Paul Wouters

Re: Possible Denial of Service: SSH Paul Wouters (Dec 18)

Roger Espel Llima

Re: Vulnrability in test-cgi... Roger Espel Llima (Dec 01)
sunos rlogin Roger Espel Llima (Dec 04)
Re: sunos rlogin Roger Espel Llima (Dec 04)

Russ

NT IIS 2.0 Bug -- Fix available. Russ (Dec 10)

Sarah Keating

AltaVista Firewall for UNIX Sarah Keating (Dec 03)

Scriptors of DOOM

Re: Weakness in some linux versions of adduser. Scriptors of DOOM (Dec 08)

Sean B. Hamor

Possible Denial of Service: SSH Sean B. Hamor (Dec 17)

SGI Security Coordinator

SGI Security Advisory 19961201-01-PX - Desktop searchbook Program SGI Security Coordinator (Dec 05)
Re: mktemp() and friends SGI Security Coordinator (Dec 24)

Steve \

Re: CERT, CIAC, etc. unethical practices Steve \ (Dec 22)
Re: mktemp() and friends Steve \ (Dec 24)

Steve Reid

Another buggy root cron job Steve Reid (Dec 25)
FALSE ALARM: Re: Another buggy root cron job Steve Reid (Dec 25)

Sven Gestegard

Re: Possible Denial of Service: SSH Sven Gestegard (Dec 18)

Terrell Thacker

Re: Solaris 2.x Vulnerability [/usr/vmsys/bin/chkperm] Terrell Thacker (Dec 05)

Thamer Al-Herbish

CERT, CIAC, etc. and unethical practices Thamer Al-Herbish (Dec 20)
Solaris 2.5 x86 aspppd (semi-exploitable-hole) Thamer Al-Herbish (Dec 20)

Theo de Raadt

Re: Exploit for crontab bug (FreeBSD 2.1.0). Theo de Raadt (Dec 14)
Re: mktemp() and friends Theo de Raadt (Dec 23)
Re: mktemp() and friends Theo de Raadt (Dec 24)
Re: CERT/AUCERT Theo de Raadt (Dec 19)
Re: mktemp() and friends Theo de Raadt (Dec 23)
Re: CERT, CIAC, etc. unethical practices Theo de Raadt (Dec 22)
Re: mktemp() and friends Theo de Raadt (Dec 23)

Todd Vierling

Update: Pine causing Solaris/x86 to hang Todd Vierling (Dec 03)

Toomas Soome

Re: Possible Denial of Service: SSH Toomas Soome (Dec 18)

Troy Bollinger

Re: Users can modify routing in AIX 4.1 Troy Bollinger (Dec 02)

Tung-Hui Hu

Re: CERT/AUCERT Tung-Hui Hu (Dec 19)

Uriel Maimon

Re: mktemp() and friends Uriel Maimon (Dec 23)

Yuri Volobuev

Irix: scanners hole Yuri Volobuev (Dec 16)
Re: CERT/AUCERT Yuri Volobuev (Dec 19)
suid_exec problem clarification Yuri Volobuev (Dec 05)
Irix: suid_exec hole Yuri Volobuev (Dec 02)
Irix: datman hole, errata Yuri Volobuev (Dec 09)