Bugtraq: by author

164 messages starting Aug 07 97 and ending Jul 31 97
Date index | Thread index | Author index


Alan Cox

More fun with Solaris and network config ioctls Alan Cox (Aug 07)
Re: Active X exploit. Alan Cox (Aug 27)

Aleph One

Sun Security Bulletin #00149 Aleph One (Aug 13)
DDB/securelevel Aleph One (Aug 30)
Sun Security Bulletin #00150 Aleph One (Aug 13)
Dead Air Aleph One (Aug 24)
WINS flooding Aleph One (Aug 01)
CERT Summary CS-97.05 Aleph One (Aug 26)
Netscape Communicator Bug Aleph One (Aug 01)
NT DNS Implicit Search Order Hole Aleph One (Aug 09)
BoS: solaris 2.5 D.O.S. attack Aleph One (Aug 16)
CERT Summary CS-97.04 Aleph One (Aug 04)
Sun Security Bulletin #00152 Aleph One (Aug 25)
SPOOLSS.EXE memory leak Aleph One (Aug 25)
CERT Advisory CA-97.22 - BIND - the Berkeley Internet Name Daemon Aleph One (Aug 14)
Re: Exchange Server 5.0 POP3 Security Hole Aleph One (Aug 28)
FreeBSD Security Advisory: FreeBSD-SA-97:04.procfs Aleph One (Aug 26)
Sun Security Bulletin #00153 Aleph One (Aug 25)

Alex

procfs patch (fwd) Alex (Aug 11)
Re: procfs hole Alex (Aug 10)

Alex Belits

Re: XFREE86 can block reserved ports Alex Belits (Aug 06)

Amy

Re: Netscape Referer header considered harmful? Amy (Aug 08)

Andreas Bogk

Re: Active X exploit. Andreas Bogk (Aug 26)

Andre L. Dos Santos

Netscape Communicator 4.01a and 4.02 for Windows 95/NT allows Andre L. Dos Santos (Aug 22)

Andrew Brown

Re: DDB/securelevel Andrew Brown (Aug 30)

Andrew McNaughton

potentially dangerous behaviour in CGI_lite.pm file upload Andrew McNaughton (Aug 12)
Mac MSIE 3.0 file overwrite. Andrew McNaughton (Aug 28)

Arthur Hagen

comp.sys.sgi.bugs: YET another security alert (sigh) Arthur Hagen (Aug 04)

Attila Bartfai

Exchange Server 5.0 POP3 Security Hole Attila Bartfai (Aug 25)

Bollinger

Re: syslogd fun Bollinger (Aug 28)

Brian Hampson

Re: in.fingerd vulnerability Brian Hampson (Aug 20)

Brian Mitchell

procfs hole Brian Mitchell (Aug 10)
Re: procfs hole Brian Mitchell (Aug 10)

Brian S. Julin

Re: Vulnerability in Glimpse HTTP (fwd) Brian S. Julin (Aug 05)

Bryan Andregg

Re: SSH LocalForward Bryan Andregg (Aug 05)

Casper Dik

Re: request-route Casper Dik (Aug 01)
Re: Active X exploit. Casper Dik (Aug 27)

-*- Chotaire -*-

Re: Having fun with eggdrop bot -*- Chotaire -*- (Aug 29)

Christian Horchert

Lasso CGI security hole (fwd) Christian Horchert (Aug 19)

Christopher Craig

Re: More ssh fun (sshd this time) Christopher Craig (Aug 27)

Christopher Klaus

Backdoor Paper Christopher Klaus (Aug 16)

Corinne Posse Releases

CPSR #8: identd Denial of Service Corinne Posse Releases (Aug 04)

Crewdson, Andy

Re: Netscape Referer header considered harmful? Crewdson, Andy (Aug 06)

Curt Sampson

Re: CPSR #8: identd Denial of Service Curt Sampson (Aug 04)

Dan Fleisher

INND causes cancer in laboratory rats (fwd) Dan Fleisher (Aug 01)

Dan Stromberg

Re: CERT Summary CS-97.04 Dan Stromberg (Aug 05)

Darren Reed

Re: Backdoor Paper Darren Reed (Aug 25)

Dave Glowacki

Re: MSQL 2.0.1 Bug Dave Glowacki (Aug 13)

David Hedley

Re: Small problem in AIX write command: Executes shell David Hedley (Aug 01)

David Holland

Security hole in rusers client David Holland (Aug 02)
Re: Small problem in AIX write command: Executes shell David Holland (Aug 01)
Re: Active X exploit. David Holland (Aug 27)

David Montgomery

Re: WINS flooding David Montgomery (Aug 17)

Davin Milun

Re: More fun with Solaris and network config ioctls Davin Milun (Aug 12)

der Mouse

Re: security hole in mget (in ftp client) der Mouse (Aug 05)
Re: Net/OpenBSD local reboot der Mouse (Jul 30)

DI. Dr. Klaus Kusche

Small problem in AIX write command: Executes shell DI. Dr. Klaus Kusche (Aug 01)

dynamo () IME NET

popper and qpopper let you read email from other pop clients dynamo () IME NET (Aug 07)

Eivind Eklund

Re: procfs hole Eivind Eklund (Aug 10)

Elliot Lee

Somewhat of a security hole in CVS Elliot Lee (Aug 29)

Eric Allman

sendmail -C problem: explained Eric Allman (Aug 07)
Re: sendmail -C: Known? Patches? (AIX 4.1.5) Eric Allman (Aug 06)
Re: sendmail -C: Known? Patches? (AIX 4.1.5) Eric Allman (Aug 07)

Eric Murray

Re: Netscape Referer header considered harmful? Eric Murray (Aug 06)

Erik Tornstam

Re: Active X exploit. Erik Tornstam (Aug 28)

Erik Troan

Re: your mail Erik Troan (Aug 10)
rpm 2.4.6 (with /tmp fixes) Erik Troan (Aug 29)

Evil Pete

Re: Backdoor Paper Evil Pete (Aug 25)

Ficus carica

Re: Net/OpenBSD local reboot Ficus carica (Jul 30)
Re: Net/OpenBSD local reboot Ficus carica (Jul 30)
Net/OpenBSD local reboot Ficus carica (Jul 30)

Forwarded by Kari Hurtta

comp.sys.sgi.bugs: Re: YET another security alert (sigh) Forwarded by Kari Hurtta (Aug 05)

Frank Kargl

Re: Active X exploit. Frank Kargl (Aug 28)

Fran Mc Gowran

Re: Serious security flaw in rpc.mountd on several operating Fran Mc Gowran (Aug 27)

Gene Spafford

Re: sendmail -C: Known? Patches? (AIX 4.1.5) Gene Spafford (Aug 09)

George Imburgia

dgux in.fingerd vulnerability George Imburgia (Aug 11)

Giuliano COCAINE

Having fun with eggdrop bot Giuliano COCAINE (Aug 28)

Greg Bacon

Re: perl fingerd stupidity Greg Bacon (Aug 01)

hOtCodE

[Fwd: BoS: Buffer overflow in /bin/bash] hOtCodE (Aug 22)

Ian R. Justman

Re: popper and qpopper let you read email from other pop clients Ian R. Justman (Aug 08)

Ivo van der Wijk

More ssh fun (sshd this time) Ivo van der Wijk (Aug 19)

J.A. Gutierrez

SpaceWare 7.3 v1.0 J.A. Gutierrez (Aug 20)

JeBe

Program To decrypt password in ws_ftp.ini JeBe (Aug 10)

Jeff Epler

Linux clone() looks safe (Re: Vulnerability in 4.4BSD rfork() Jeff Epler (Aug 02)

Jesse Brown

Pine Mail Client Bug Jesse Brown (Aug 20)

Jim Hutchins

Re: security hole in mget (in ftp client) Jim Hutchins (Aug 12)

J. Joseph Max Katz

Re: CPSR #8: identd Denial of Service J. Joseph Max Katz (Aug 04)

Joerg Kuemmerlen

Yet another (minor) SGI bug Joerg Kuemmerlen (Aug 05)

John Allen

Re: solaris ^[[1J reboot John Allen (Aug 12)

Jonathan A. Zdziarski

Re: procfs hole Jonathan A. Zdziarski (Aug 10)

Kris Benson

Re: Buffer overflow in /bin/bash Kris Benson (Aug 26)

Kristof Van Damme

SSH LocalForward Kristof Van Damme (Aug 02)

Kyle Amon

Re: SSH LocalForward Kyle Amon (Aug 04)

long-morrow () CS YALE EDU

Re: SSH LocalForward long-morrow () CS YALE EDU (Aug 03)

Luke Mewburn

Re: Serious security flaw in rpc.mountd on several operating Luke Mewburn (Aug 28)

Lutz Donnerhacke

Re: Active X exploit. Lutz Donnerhacke (Aug 27)

Marc Slemko

Re: popper and qpopper let you read email from other pop clients Marc Slemko (Aug 10)
Re: Linux clone() looks safe (Re: Vulnerability in 4.4BSD rfork() Marc Slemko (Aug 03)
Re: Somewhat of a security hole in CVS Marc Slemko (Aug 29)

Martin J. Dellwo

SGI security patches Martin J. Dellwo (Aug 29)

Matt

Bugs in Debian Linux's ircd package Matt (Aug 01)

Matt Potter

/bin/eject Matt Potter (Aug 22)

mhpower () MIT EDU

security hole in mget (in ftp client) mhpower () MIT EDU (Aug 04)

Michael Graff

Re: Net/OpenBSD local reboot Michael Graff (Jul 30)

Michael Warfield

Re: Vulnerability in Majordomo Michael Warfield (Aug 26)

Munil Shah

Re: Vulnerability in WINS web server, NT4.0 Munil Shah (Aug 06)

Nicolas Dubee

Re: Backdoor Paper Nicolas Dubee (Jul 27)
SSH LocalForward Nicolas Dubee (Aug 02)

nomad () APOLLO TOMCO NET

Mac TCP/IP Stack glitch. nomad () APOLLO TOMCO NET (Aug 31)
Re: Mac TCP/IP Stack glitch. nomad () APOLLO TOMCO NET (Aug 31)

Olaf Kirch

Security Fix for Linux Universal NFS Daemon Olaf Kirch (Aug 27)

Olaf Titz

Re: More ssh fun (sshd this time) Olaf Titz (Aug 23)

Oliver Xymoron

Re: Vulnerability in Majordomo Oliver Xymoron (Aug 26)

Paul H. Hargrove

Re: More ssh fun (sshd this time) Paul H. Hargrove (Aug 27)
Xdm/chooser seurity problems Paul H. Hargrove (Aug 08)

Paul Leach

Re: Active X exploit. Paul Leach (Aug 26)
Re: Active X exploit. Paul Leach (Aug 27)
Re: Simple TCP service hotfix reposted Paul Leach (Aug 18)
Simple TCP service hotfix reposted Paul Leach (Aug 15)

Peter

Re: Serious security flaw in rpc.mountd on several operating Peter (Aug 25)
Serious security flaw in rpc.mountd on several operating systems. Peter (Aug 24)

Peter Eriksson

Re: identd bug Peter Eriksson (Aug 06)

Peter Shipley

Active X exploit. Peter Shipley (Aug 25)

Phillip M Hallam-Baker

Re: Netscape Referer header considered harmful? Phillip M Hallam-Baker (Aug 07)

Phillip R. Jaenke

Re: CPSR #8: identd Denial of Service Phillip R. Jaenke (Aug 09)
Possible fixed identd Phillip R. Jaenke (Aug 13)

presotto () PLAN9 BELL-LABS COM

Re: Vulnerability in 4.4BSD rfork() implementation presotto () PLAN9 BELL-LABS COM (Aug 04)

Randal Schwartz

Re: Vulnerability in Majordomo Randal Schwartz (Aug 26)

Razvan Dragomirescu

Vulnerability in Majordomo Razvan Dragomirescu (Aug 24)
Buffer overflow in /bin/bash Razvan Dragomirescu (Aug 21)

Ronald L. Parker

Netscape Referer header considered harmful? Ronald L. Parker (Aug 04)

Sam Chan

Re: WINS flooding Sam Chan (Aug 15)

Scott Moseman

Re: solaris ^[[1J reboot Scott Moseman (Aug 11)

Scott Reynolds

Re: Net/OpenBSD local reboot Scott Reynolds (Jul 30)

Serge E. Pick

Volume manager & CD-ROM Serge E. Pick (Aug 19)
Volume Manager & CD-ROM Serge E. Pick (Aug 19)

Sevo Stille

Re: SSH LocalForward Sevo Stille (Aug 02)
Re: SSH LocalForward Sevo Stille (Aug 03)

SGI Security Coordinator

SGI Security Advisory 19970801-01-PX - IRIX ftpd Signal Handling SGI Security Coordinator (Aug 18)
SGI Security Advisory 19970509-02-PX - IRIX ordist Buffer Overrun SGI Security Coordinator (Aug 05)

so1o

imapd goodies, one that works. so1o (Aug 07)

Solar Designer

Re: More ssh fun (sshd this time) Solar Designer (Aug 27)
Integer Overflows Solar Designer (Aug 27)
Getting around non-executable stack (and fix) Solar Designer (Aug 10)

Steve Herman

IMAPd scans Steve Herman (Aug 06)

Steve Hill

Re: Vulnerability in Majordomo Steve Hill (Aug 26)

Thamer Al-Herbish

Re: More ssh fun (sshd this time) Thamer Al-Herbish (Aug 23)

The Nolander

Re: Having fun with eggdrop bot The Nolander (Aug 29)

Theo de Raadt

Re: syslogd fun (erratum) Theo de Raadt (Aug 28)
Re: Serious security flaw in rpc.mountd on several operating Theo de Raadt (Aug 27)
Re: Somewhat of a security hole in CVS Theo de Raadt (Aug 29)
Re: request-route Theo de Raadt (Aug 01)

Thomas H. Ptacek

Vulnerability in 4.4BSD rfork() implementation Thomas H. Ptacek (Aug 02)

thoth () PURPLEFROG COM

Re: INND causes cancer in laboratory rats (fwd) thoth () PURPLEFROG COM (Aug 01)

Tobias Oetiker

solaris ^[[1J reboot Tobias Oetiker (Aug 10)
Re: solaris ^[[1J reboot Tobias Oetiker (Aug 12)

Travis Hassloch

IP spoofing/splicing references Travis Hassloch (Aug 25)

Troy Bollinger

Re: sendmail -C: Known? Patches? (AIX 4.1.5) Troy Bollinger (Aug 10)

vempire

MSQL 2.0.1 Bug vempire (Aug 11)

Wietse Venema

Re: More ssh fun (sshd this time) Wietse Venema (Aug 25)

Willy TARREAU

XFREE86 can block reserved ports Willy TARREAU (Aug 06)

Yuri Volobuev

syslogd fun Yuri Volobuev (Aug 27)
Re: syslogd fun (erratum) Yuri Volobuev (Aug 28)

Zoltan Hidvegi

Re: request-route Zoltan Hidvegi (Jul 31)