Bugtraq: by date

385 messages starting Jun 13 99 and ending Dec 12 99
Date index | Thread index | Author index


Sunday, 13 June

BigIP - bigconf.cgi holes Guy Cohen

Wednesday, 14 July

Re: bash 1.x - command substitution bug Michal Zalewski
Sendmail 8.8.x - time to upgrade? Michal Zalewski

Friday, 16 July

Re: local users can panic linux kernel (was: SuSE syslogd advisory) Michal Zalewski

Friday, 29 October

Re: Mac OS 9 Idle Lock Bug gabriel rosenkoetter

Saturday, 30 October

Amanda multiple vendor local root compromises Tellier, Brock

Sunday, 31 October

Fwd: Caching of passwords revealed after installing SP6 Eric Schultze
Re: Mac OS 9 Idle Lock Bug Zachary Keane

Monday, 01 November

Avirt Mail Server 3.3a or 3.5 remotely exploitable buffer overflow vulnerability Luciano Martins
RFP9906 - Services.exe DoS in NT 4 (RFPoison) .rain.forest.puppy.
Re: AW: Mac OS 9 Idle Lock Bug Mike Eldridge
Stack Shield 0.6 beta relased vendicator () USA NET
Re: Amanda multiple vendor local root compromises Ian Turner
"Function pointer" attacks. vendicator () USA NET
Re: Amanda multiple vendor local root compromises Chris Tobkin
Re: AW: Mac OS 9 Idle Lock Bug Greg Francis
RFP9906 - Services.exe DoS in NT 4 (RFPoison) - Workaround scott
Re: Unqualified Postings Marc
Re: Stack Shield 0.6 beta relased Crispin Cowan
Re: Amanda multiple vendor local root compromises monti
Re: Amanda multiple vendor local root compromises Rob
Re: [Re: Amanda multiple vendor local root compromises] Brock Tellier
Unqualified Postings edi () GANYMED ORG
Re: Amanda multiple vendor local root compromises Bill Fumerola
Microsoft/CERT IIS ODBC/RDS/IIS Advisory (MS98-004) Jay Schimke
Re: [Re: Amanda multiple vendor local root compromises] Peter Walker
Re: Unqualified Postings Wanderley J. Abreu Jr.
Re: RFP9906 - Services.exe DoS in NT 4 (RFPoison) nascheme () ENME UCALGARY CA

Tuesday, 02 November

Exploit + temp patch for aVirt mail server 3.5. dark spyrit
Re: Amanda multiple vendor local root compromises Alexandre Oliva
Re: Amanda multiple vendor local root compromises Alexandre Oliva
Re: [Re: Amanda multiple vendor local root compromises] Alexandre Oliva
Some holes for Win/UNIX softwares UNYUN
Avirt Mail Server 3.3a or 3.5 remotely exploitable buffer overflow vulnerability Jesús López de Aguileta
Re: [Re: Amanda multiple vendor local root compromises] Bruce A. Mah
Re: Unqualified Postings v0rt
Re: "Function pointer" attacks. Crispin Cowan
Oracle 8i Security Jonathan A. Zdziarski
Re: [Re: Amanda multiple vendor local root compromises] Robert Watson
Re: WFTPD v2.40 FTPServer remotely exploitable buffer overflow vulnerability Alun Jones
[debian] New versions of lpr released Aleph One
[debian] New version of nis released Aleph One

Wednesday, 03 November

RFP9907: You, your servers, RDS, and thousands of script kiddies .rain.forest.puppy.
[squid] exploit for external authentication problem Oezguer Kesim
Re: "Function pointer" attacks. Mariusz Woloszyn
Re: Unqualified Postings Elias Levy
Re: Fix for ssh-1.2.27 symlink/bind problem Wietse Venema
UnixWare 7's dtappgather Elias Levy
Re: Mac OS 9 Idle Lock Bug devbugs () APPLE COM
More Alibaba Web Server problems... Kerb
Re: [Re: Amanda multiple vendor local root compromises] Frank Crawford
NeoPlanet Saves all emails in Plain text James J. Capone
Re: [Re: Amanda multiple vendor local root compromises] Alexandre Oliva
hylafax-4.0.2 local exploit Tellier, Brock

Thursday, 04 November

Remote DoS Attack in BFTelnet Server v1.1 for Windows NT Ussr Labs
Printer (spooler) Service Vulnerabilities eEye - Digital Security Team
IE 5.0 vulnerabilities using HTTP redirection Georgi Guninski
RealNetworks RealServer G2 buffer overflow. dark spyrit
Re: Overflow in tcplog.c (VD#3) CyberPsychotic
realown.c, unix port of realown.asm by dark spyrit Sebastian
Re: Mac OS 9 Idle Lock Bug devbugs () APPLE COM
Re: WFTPD v2.40 FTPServer remotely exploitable buffer overflow vulnerability iarce
Re: WFTPD v2.40 FTPServer remotely exploitable buffer overflow vulnerability Alberto Solińo
Palm Hotsync vulnerable to DoS attack Aviram Jenik
RealNetworks RealServer G2 buffer overflow - WORKAROUND (fwd) ah1 () SECURITYFOCUS COM
Microsoft Security Bulletin (MS99-047) Aleph One
Re-release of Microsoft Security Bulletin MS99-042 Aleph One
Eserv 2.50 Web interface Server Directory Traversal Vulnerability Ussr Labs
Re: hylafax-4.0.2 local exploit Thomas Biege
ssh-1.2.27 fails to check size of RSA-key Markus Friedl

Friday, 05 November

FTGate Version 2.1 Web interface Server Directory Traversal Vulnerability Ussr Labs
Re: More Alibaba Web Server problems... Thomas Dullien
SCO Patches Alfred Huger
SCO Security Bulletin 99.17 Michael Almond
Call for papers, Malicious Information Technology Ken Williams
Cisco NAT DoS (VD#1) Blue Boar
Antidote to RFPoison--followup to RFP9906 .rain.forest.puppy.
Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Blue Boar
Overflow in tcplog.c (VD#3) Blue Boar

Saturday, 06 November

Overflow in Alibaba Web Server 2.0 (VD#4) Blue Boar
ICQ 2000 trojan/worm (VD#5) Blue Boar
mistake in "Antidote for RFPoison" (fwd) .rain.forest.puppy.
Re: Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Marc Slemko
Re: Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Ben Laurie
Re: Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Stephen White
Netscape Web Publisher Tim Jones

Sunday, 07 November

Interscan VirusWall NT 3.23/3.3 buffer overflow. dark spyrit
Windows NT Spooler Service. Avri Schneider
Re: Windows NT Spooler Service. Marc
Re: Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Steven Champeon
[w00giving '99 #2] IMAIL POP server Shok
Re: Netscape Web Publisher Mnemonix
Re: Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Blue Boar
Patch for VirusWall 3.23. dark spyrit
Re: Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Chuck Phillips
Re: Netscape Web Publisher nblasgen () NICK REFRACT COM

Monday, 08 November

vwxploit.c unix port Sebastian
Re: Netscape Web Publisher Kitetoa
Re: Guestbook.pl, sloppy SSI handling in Apache? (VD#2) Jefferson Ogata
Security flaw in Cobalt RaQ2 cgiwrap Chris Adams
MS Outlook alert : Cuartango Active Setup Elias Levy
IE4/5 "file://" buffer overflow UNYUN
Irfan view 3.07 buffer overflow UNYUN
Re: MS Outlook alert : Cuartango Active Setup David LeBlanc
Re: MS Outlook alert : Cuartango Active Setup - Workaround Instructions Mark
Microsoft Security Bulletin MS99-047, Patch Available for "Malfor med Spooler Request" Vulnerability Microsoft Product Security Response Team
Re: Interscan VirusWall NT 3.23/3.3 buffer overflow. Bob Li
Re: Eserv 2.50 Web interface Server Directory Traversal Vulnerability Andrey Cherezov
Re: Security flaw in Cobalt RaQ2 cgiwrap Nathan Neulinger
Insecure handling of NetSol maintainer passwords jlewis () LEWIS ORG
Remote DoS Attack in TransSoft's Broker Ftp Server v3.5 Vulnerability Ussr Labs
FreeBSD 3.3's seyon vulnerability Brock Tellier

Tuesday, 09 November

Re: MS Outlook alert : Cuartango Active Setup - Workaround Instructions Andy Helsby
undocumented bugs - nfsd Mariusz Marcinkiewicz
Re: MS Outlook alert : Cuartango Active Setup Bronek Kozicki
Re: FreeBSD 3.3's seyon vulnerability Bill Fumerola
flaw in dmesg under Solaris echo8
Re: BigIP - bigconf.cgi holes Rob Gilde
Re: Interscan VirusWall NT 3.23/3.3 buffer overflow. Elias Levy
Re: Insecure handling of NetSol maintainer passwords Jefferson Ogata
Re: IE4/5 "file://" buffer overflow Mikael Olsson
(no subject) Ejovi Nuwere
Re: Security flaw in Cobalt RaQ2 cgiwrap Chris Adams
ImmuniX OS Security Alert: StackGuard 1.21 Released Crispin Cowan
[Cobalt] Security Advisory - cgiwrap Jeff Bilicki
Re: [Re: FreeBSD 3.3's seyon vulnerability] Brock Tellier
Remote DoS Attack in QVT/Term 'Plus' 4.2d FTP Server Vulnerability Ussr Labs

Wednesday, 10 November

Re: BigIP - bigconf.cgi holes Guy Cohen
Multiples Remotes DoS Attacks in Artisoft XtraMail v1.11 Vulnerability Ussr Labs
Re: undocumented bugs - nfsd Olaf Kirch
Re: ImmuniX OS Security Alert: StackGuard 1.21 Released Gerardo Richarte
rpc.nfsd exploit code Mariusz Marcinkiewicz
BIND NXT Bug Vulnerability Elias Levy
Re: ImmuniX OS Security Alert: StackGuard 1.21 Released Crispin Cowan
Re: ImmuniX OS Security Alert: StackGuard 1.21 Released Iván Arce
Re: Insecure handling of NetSol maintainer passwords pedward () WEBCOM COM
Re: BIND NXT Bug Vulnerability Richard Trott
Re: BIND NXT Bug Vulnerability Mike Iglesias
Re: Insecure handling of NetSol maintainer passwords Trevor Schroeder
Re: FTGate vulnerability. (fwd) Alfred Huger
(no subject) Anonymous
F5 Networks Security Advisory (fwd) Gwendolynn ferch Elydyr
Re: BigIP - bigconf.cgi holes Rob Gilde
ISSalert: ISS Security Advisory: Multiple Root Compromise Vulnerabilities in Oracle Application Server Aleph One
networksolutions CRYPT-PW salt (was: Re: Insecure handling of NetSol maintainer passwords) Jefferson Ogata
Re: F5 Networks Security Advisory (fwd) pedward () WEBCOM COM
[RHSA-1999:053-01] new NFS server pacakges available (5.2, 4.2) Bill Nottingham

Thursday, 11 November

Re: [linux-security] Re: undocumented bugs - nfsd Olaf Kirch
SmartServer3 POP3 BindView Advisory
Re: Insecure handling of NetSol maintainer passwords Sean Sosik-Hamor
THE 12th ANNUAL FIRST CONFERENCE on COMPUTER SECURITY michele sensalari
OS/390 Interlink Stack DoS with nmap bugz () NAZGUL COM
Re: F5 Networks Security Advisory (fwd) Mike Johnson
Vulnerability in ImmuniX OS Security Alert: StackGuard 1.21 Released Gerardo Richarte
CERT Advisory CA-99.14 - Multiple Vulnerabilities in BIND Aleph One
[Debian] New version of proftpd fixes remote exploits Aleph One
Re: F5 Networks Security Advisory (fwd) pedward () WEBCOM COM
[Debian] New version of nfs-server fixes remote exploit Aleph One
(no subject) David R. Conrad
Re: your mail Brian Wellington
Re: CERT Advisory CA-99.14 - Multiple Vulnerabilities in BIND David R. Conrad
Re: networksolutions CRYPT-PW salt (was: Re: Insecure handling of NetSol maintainer passwords) der Mouse
[RHSA-1999:054-01] Security problems in bind Bill Nottingham
Re: [RHSA-1999:054-01] Security problems in bind John D. Hardin
Re: rpc.nfsd exploit code Crispin Cowan
Microsoft Security Bulletin (MS99-048) Aleph One
Re: your mail Alain Thivillon
FormHandler.cgi Mnemonix
[w00giving '99 #3, w00news] UnixWare 7's /var/sadm Matt Conover
WU-FTPD Mnemonix

Friday, 12 November

Re: rpc.nfsd exploit code Mariusz Marcinkiewicz
Re: F5 Networks Security Advisory (fwd) Rogier Wolff
Re: CERT Advisory CA-99-14 Multiple Vulnerabilities in BIND Anonymous
Update on Auto_FTP Ben
Re: your mail Firstname Lastname
Re: WU-FTPD hayward () SLOTHMUD ORG
Re: your mail Alan Brown
Re: CERT Advisory CA-99-14 Multiple Vulnerabilities in BIND Solar Designer
Re: rpc.nfsd exploit code Rogier Wolff
Re: [RHSA-1999:054-01] Security problems in bind John D. Hardin
[ Cobalt ] Security Advisory - Bind Jeff Bilicki
Re: BIND bugs of the month D. J. Bernstein
Microsoft Security Bulletin (MS99-049) Aleph One

Saturday, 13 November

Buffer overflow exploit in the alpha linux Taeho Oh
Re: [RHSA-1999:054-01] Security problems in bind Gregory A Lundberg
Re: Vulnerability in ImmuniX OS Security Alert: StackGuard 1.21Released Crispin Cowan
thttpd 2.04 stack overflow (VD#6) Blue Boar
ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Blue Boar
Delegate 5.9.x - 6.0.x remote exploit (possibly others) Sebastian
Oracle 8 root exploit Tellier, Brock
Re: networksolutions CRYPT-PW salt (was: Re: Insecure handling of NetSol maintainer passwords) jlewis () LEWIS ORG
yet another security threat in MS OE 5 deepquest () NETSCAPE NET
Re: BIND bugs of the month (spoofing secure Web sites?) Peter W
Re: ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Theo de Raadt
BIND 8.2.2-P5 release announcement Roger Fajman
Re: BIND bugs of the month (fwd) Chris Yarnell
Re: BIND bugs of the month (spoofing secure Web sites?) D. J. Bernstein

Sunday, 14 November

IE 5.0 and Windows Media Player ActiveX object allow checking the existence of local files and directories Georgi Guninski
Re: BIND bugs of the month David R. Conrad
MacOS 9 and the MacOS Netware Client Matt White
Re: ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Szilveszter Adam
Re: BIND bugs of the month (spoofing secure Web sites?) Kurt Seifried
Re: BIND bugs of the month (spoofing secure Web sites?) Steven M. Bellovin
Re: ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Brian Fundakowski Feldman
Re: BIND bugs of the month (fwd) Alan Cox
Re: BIND bugs of the month (spoofing secure Web sites?) D. J. Bernstein
NetCPlus SmartServer3 POP 3.51.1 EXPLOIT Ussr Labs

Monday, 15 November

Re: MacOS 9 and the MacOS Netware Client deepquest () NETSCAPE NET
Re: Oracle 8 root exploit Adam and Christine Levin
Re: Oracle 8 root exploit Martin Mevald
Re: BIND bugs of the month (spoofing secure Web sites?) Elias Levy
Re: Buffer overflow exploit in the alpha linux Lamont Granquist
Re: Oracle 8 root exploit Antonomasia
Windows NT update carries bug Williams, Ken
SQL Server 7.0 Linked Server Password Vulnerability (fwd) ah1 () SECURITYFOCUS COM
Re: MacOS 9 and the MacOS Netware Client sherrera () BASS CUESTA CC CA US
Re: MacOS 9 and the MacOS Netware Client deepquest () NETSCAPE NET

Tuesday, 16 November

ssh 1.2.27 limits patch Ultor
Re: Windows NT update carries bug Alan J. Wylie
Re: ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Oystein Viggen
Re: FormHandler.cgi m4rcyS
Re: Oracle 8 root exploit Jared Still
Re: Windows NT update carries bug Peter Kane
hping2 antirez () INVECE ORG
Re: Windows NT update carries bug Tony Plastino
Re: ssh 1.2.27 limits patch Ultor
NEUROCOM: Nashuatec D445/435 vulnerabilities updated gregory duchemin
Re: Windows NT update carries bug Fabian Kroenner
Re: ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Daniel Jacobowitz
Re: ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Jochen Bauer
Re: Oracle 8 root exploit Elias Levy
Re: Oracle 8 root exploit Adam and Christine Levin
Re: Oracle 8 root exploit Chris Calabrese
rpc.ttdbserverd on solaris 7 Dan Stromberg
[Fwd: Printer Vulnerability: Tektronix PhaserLink Webserver gives Administrator Password] Dennis W. Mattison
Re: RealNetworks RealServer G2 buffer overflow. (fwd) dark spyrit
Remote D.o.S Attack in G6 FTP Server v2.0 (beta 4/5) Vulnerability Ussr Labs
SuSE Security Announcement Thomas Biege

Wednesday, 17 November

Remote DoS attack against Microsoft SQL Server 7.0 Kevork Belian
default permissions for tin Brian
NT SP 6 TCP protocol stack issue: Hotfix available Adam Szilveszter
From the SCO website Alfred Huger
Jet Vulnerability affect Office 95 users (fwd) ah1 () SECURITYFOCUS COM
Re: [Fwd: Printer Vulnerability: Tektronix PhaserLink Webserver gives Administrator Password] Ronan Waide
[Debian] New version of bind released Aleph One
Re: hard-coded windows exploits Thomas Dullien
Re: hard-coded windows exploits Gerardo Richarte
Re: Remote D.o.S Attack in G6 FTP Server v2.0 (beta 4/5) Vulnerability Seth R Arnold
Re: hardcoded windows exploits Jeremy Kothe
Re: Tektronix PhaserLink Webserver Reveals Admin Password Blake Frantz
Pine: expanding env vars in URLs (seems to be fixed as of 4.21) Jim Hebert
Removal of TCP Initial Sequence Number Patch Aleph One
Re: OS/390 Interlink Stack DoS with nmap bugz () NAZGUL COM
Microsoft Security Bulletin (MS99-043) Aleph One
Re: hardcoded windows exploits Jeremy Kothe
Re: hard-coded windows exploits Simple Nomad
Re: hard-coded windows exploits dark spyrit
Re: Remote D.o.S Attack in G6 FTP Server v2.0 (beta 4/5) Vulnerability Marc

Thursday, 18 November

WordPad/riched20.dll buffer overflow Pauli Ojanpera
Re: lynx 2.8.x - 'special URLs' anti-spoofing protection is weak Michal Zalewski
Re: Microsoft Security Bulletin (MS99-043) John Madden
Re: Oracle 8 root exploit Steve D'Angona
SuSE Security Announcement - syslogd (a1) Thomas Biege
Re: Caldera Pine Advisory CyberPsychotic
Re: Tektronix PhaserLink Webserver Reveals Admin Password elfchief () LUPINE ORG
Re: [Fwd: Printer Vulnerability: Tektronix PhaserLink Webservergives Administrator Password] Dennis W. Mattison
Re: Oracle 8 root exploit Chris Calabrese
Re: WordPad/riched20.dll buffer overflow Bronek Kozicki
Notifying Vendors Kerb
Re: WordPad/riched20.dll buffer overflow Gerardo Richarte
Re: rpc.ttdbserverd on solaris 7 Brent Paulson
Re: ssh-1.2.27 remote buffer overflow - exploitable (VD#7) Nick Craig-Wood
Potential vulnerability in Oracle Mary Ann Davidson
Re: WordPad/riched20.dll buffer overflow User SCOTT
local users can panic linux kernel (was: SuSE syslogd advisory) Mixter

Friday, 19 November

Remote D.o.S Attack in ZetaMail 2.1 Mail POP3/SMTP Server Vulnerability Ussr Labs
buffer overflow in HP JetDirect module (probably affects all HP printers with network support) Tobias Haustein
ProFTPd - mod_sqlpw.c Todd C. Campbell
Pandora v4 Beta 2 Software Simple Nomad
Re: rpc.ttdbserverd on solaris 7 In-reply-to: Your message of &quot;Tue, 16 Nov 1999 14:34:41 PST.&quot; <3831DC01.BFE5B400 () nis acs uci edu> Elias Levy
Re: Oracle 8 root exploit Alan Olsen
(no subject) Anonymous
Re: WordPad/riched20.dll buffer overflow Mnemonix
Re: buffer overflow in HP JetDirect module (probably affects all HP printers with network support) Brian
Re: local users can panic linux kernel (was: SuSE syslogd advisory) Alan Cox
[RHSA-1999:055-01] Denial of service attack in syslogd Bill Nottingham
Re: WordPad/riched20.dll buffer overflow Ussr Labs

Saturday, 20 November

Re: local users can panic linux kernel (was: SuSE syslogd advisory) Savochkin Andrey Vladimirovich
Re: local users can panic linux kernel (was: SuSE syslogd advisory) Darren Reed
Re: buffer overflow in HP JetDirect module (probably affects all HP printers with network support) Pat Hayden
more about IP ID antirez () INVECE ORG
[ COBALT ] Security Advisory - syslog Jeff Bilicki
FreeBSD sysinstall Jonas Eriksson

Sunday, 21 November

Re: WordPad/riched20.dll buffer overflow - Full Details Solar Eclipse

Monday, 22 November

Re: local users can panic linux kernel (was: SuSE syslogd advisory) Malcolm Beattie
Remote DoS Attack in Vermillion FTP Daemon (VFTPD) v1.23 Vulnerability Ussr Labs
IE 5.0 XML HTTP redirect problems Georgi Guninski
Caldera Pine Advisory Alfred Huger
DoS with sysklogd, glibc (Caldera) Alfred Huger
DNA-1999-001: NetTerm FTP Daemon vulnerabilities Jeremy Iverson
ANN: Bruce v1.0 Early Access 1 - Available for downloa Alec Muffett
Re: Pine: expanding env vars in URLs (seems to be fixed as of 4.21) Pavel Kankovsky
Re: DoS with sysklogd, glibc (Caldera) Balazs Scheidler
Re: local users can panic linux kernel (was: SuSE syslogd Alan Cox
Re: WordPad/riched20.dll buffer overflow Solar Eclipse
Buffer Overflow Survey Paper Crispin Cowan
Re: Sendmail 8.8.x - time to upgrade? Gregory Neil Shapiro
Re: Sendmail 8.x.x - any user may rebuild aliases database Gregory Neil Shapiro

Tuesday, 23 November

Re: local users can panic linux kernel (was: SuSE syslogd Savochkin Andrey Vladimirovich
Re: WordPad/riched20.dll buffer overflow Thomas Dullien
Re: local users can panic linux kernel (was: SuSE syslogd advisory) Cy Schubert - ITSD Open Systems Group
Re: WordPad/riched20.dll buffer overflow Mnemonix
Printer Vulnerabilities (Tektronix and JetDirect) Elias Levy
NetBeans/ Forte' Java IDE HTTP vulnerability Halcyon Skinner
Operational Issues: Applications & Appliances (was: Buffer Overflow Survey Paper) Crispin Cowan
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) Jefferson Ogata
Re: WordPad/riched20.dll buffer overflow Ron Parker
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) Shafik Yaghmour
Oracle 8i questions Brock Tellier
Re: local users can panic linux kernel (was: SuSE syslogd Darren Reed
Re: WordPad/riched20.dll buffer overflow Ussr Labs

Wednesday, 24 November

Multiples Remotes DoS Attacks in MDaemon Server v2.8.5.0 Vulnerability Ussr Labs
Fw: CERT Summary CS-99.04 Sehmel, William C.
Re: local users can panic linux kernel (was: SuSE syslogd Savochkin Andrey Vladimirovich
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) Olaf Kirch
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) A. Steinmetz
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) Goetz Babin-Ebell
[ COBALT ] Security Advisory - Sendmail Jeff Bilicki
Re: Operational Issues: Applications & Appliances (was: Buffer Overflow Survey Paper) Scott Zimmerman
Security Bulletins Digest Aleph One
Re: Operational Issues: Applications & Appliances (was: Buffer Overflow Survey Paper) Mark Seiden
Re: WordPad/riched20.dll buffer overflow Gerardo Richarte
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) der Mouse
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) Paul Boyer
(no subject) Swen Persson
Re: WordPad/riched20.dll buffer overflow Gerardo Richarte
Re: Operational Issues: Applications & Appliances (was: Buffer Overflow Survey Paper) Simple Nomad
Netscape Communicator 4.7 - Navigator Overflows Mike Boto
Netscape communicator 4.x Javascript security flaw Ahmed Ghandour
BindView Security Advisory: SSR Denial of Service BindView Security Advisory
Re: BindView Security Advisory: SSR Denial of Service Alan Cox
Remote DoS Attack in WorldClient Server v2.0.0.0 Vulnerability Ussr Labs
Remote DoS Attack in BisonWare FTP Server V3.5 Vulnerability Ussr Labs
Re: local users can panic linux kernel (was: SuSE syslogd Darren Reed

Thursday, 25 November

Windows NT 4.0 Service Pack 6A Breaks IP Forwarding Brendan Howes
Oracle Web Listener Mnemonix
[w00giving '99 #5 and w00news]: UnixWare 7's su Matt Conover
[w00giving '99 #6]: UnixWare 7's Xsco Matt Conover
[w00giving '99 #7]: UnixWare 7's xlock Matt Conover

Friday, 26 November

Re: WordPad/riched20.dll buffer overflow pedward () WEBCOM COM
Re: Netscape communicator 4.x Javascript security flaw Metal Hurlant
Re: local users can panic linux kernel (was: SuSE syslogdadvisory) Alessandro Rubini
Re: Netscape communicator 4.x Javascript security flaw Ahmed Ghandour
Re: WordPad/riched20.dll buffer overflow Christopher Rhodes
Page table protection on Intel Jason Spence
SuSE Security Announcement - new security tools Marc Heuse

Saturday, 27 November

Re: WordPad/riched20.dll buffer overflow Glynn Clements
3Com cable modems / Mediaone Signal 11
Netscape Communicator 4.7 - Navigator Overflows Mike Boto
Re: WordPad/riched20.dll buffer overflow Crispin Cowan

Sunday, 28 November

Re: WordPad/riched20.dll buffer overflow Jason Spence
SCO su patches Alfred Huger
TooRcon Computer Security Expo Announces Pre-Registration Ben
Re: Cisco NAT DoS (VD#1) Jim Duncan

Monday, 29 November

Solaris7 dtmail/dtmailpr/mailtool Buffer Overflow UNYUN
Re: Oracle Web Listener Posick, Steve
FICS buffer overflow canul
Re: 3Com cable modems / Mediaone Joseph W. Breu
Re: WordPad/riched20.dll buffer overflow Solar Designer
Re: Solaris7 dtmail/dtmailpr/mailtool Buffer Overflow Chris Calabrese
Re: 3Com cable modems / Mediaone Mandachi, Dorin (CCI-Omaha)
Ultimate Bulletin Board v5.3x? Bug Sean Malloy
serious Qpopper 3.0 vulnerability Mixter
MDaemon 2.7 J DoS Nobuo Miwa
another hole of Solaris7 kcms_configure UNYUN
Re: Microsoft Security Bulletin (MS99-051) (fwd) Jim Knoble
Re: wu-ftpd bug Gregory A Lundberg

Tuesday, 30 November

Re: WordPad/riched20.dll buffer overflow Casper Dik
SUBST problem Dave Tarbatt - ACS
3Com cable modems / Mediaone Luis Henriques
NTmail and VRFY George
Default IE 5.0 security settings allow frame spoofing Georgi Guninski
Re: Ultimate Bulletin Board v5.3x? Bug William Daskaluk

Sunday, 12 December

bash 1.x - command substitution bug Michal Zalewski
Sendmail 8.x.x - any user may rebuild aliases database Michal Zalewski