Bugtraq: by date

303 messages starting Jul 09 99 and ending Oct 29 99
Date index | Thread index | Author index


Friday, 09 July

mc bug Michal Zalewski

Thursday, 29 July

ExpressFS 2.x FTPServer remotely exploitable buffer overflow vulnerability Luciano Martins
Vulnerability in CMail SMTP Server Version 2.4: Remotely exploitable buffer Luciano Martins

Thursday, 30 September

Re: Sun's TTSESSION Vulnerability Charlie Giannetto
Re: FireWall-1 weakness Chris Brenton
Linux cdda2cdr local exploit Brock Tellier
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Eric Griffis
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Dan Astoorian
Re: Kvt bug Brock Tellier
Re: FireWall-1 weakness Mike Frantzen
Re: FireWall-1 weakness David Grimes
Security flaw in Mediahouse Statistics Server v4.28 & 5.01 per_bergehed () HOTMAIL COM
Re: FireWall-1 weakness Hugo.van.der.Kooij () CAIW NL
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Jeff Long
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Jeff Long

Friday, 01 October

Re: Kvt bug Dmitry Yu. Bolkhovityanov
Re: Team Asylum: Yahoo! Messenger DoS Alan T. Ruiz
Re: Historical Bugtraq Question Alfred Huger
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Chris Keane
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Dan Astoorian
WIn98 port security query Jay R. Ashworth
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Casper Dik
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Valdis.Kletnieks () VT EDU
Re: Team Asylum: Yahoo! Messenger DoS Don
Team Asylum: iHTML Merchant (Follow-up) Team Asylum
RFP9903: AeDebug vulnerability .rain.forest.puppy.

Saturday, 02 October

RFP9904: TeamTrack webserver vulnerability .rain.forest.puppy.
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Pavel Kankovsky
Buffer Overflows and Remote Root Exploits Crispin Cowan
Fix for ssh-1.2.27 symlink/bind problem Scott Gifford

Sunday, 03 October

(no subject) Dennis Conrad
Re: RFP9903: AeDebug vulnerability David LeBlanc
Re: RFP9903: AeDebug vulnerability .rain.forest.puppy.
Re: ActiveX Buffer Overruns Aviram Jenik

Monday, 04 October

Re: Fix for ssh-1.2.27 symlink/bind problem Eivind Eklund
Re: WIn98 port security query Mike Acpizer
Re: Kvt bug Dominik Vogt
MicroImages MIX X Server Jan Szumiec
Re: Fix for ssh-1.2.27 symlink/bind problem Olaf Seibert
Weakness In "The Matrix" Screensaver For Windows Boyce, Nick
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Jeff Long
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Sylvain Robitaille
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Jeff Long
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Jeff Long
Re: [Fwd: Truth about ssh 1.2.27 vulnerabiltiy] Dan Astoorian
FireWall-1 weakness? Rosner, D
SuSE Security Announcement - mirror Marc Heuse
Re: RFP9903: AeDebug vulnerability Matt
Re: Fix for ssh-1.2.27 symlink/bind problem Scott Gifford
Re: Fix for ssh-1.2.27 symlink/bind problem Scott Gifford
RH6.0 local/remote command execution Brock Tellier

Tuesday, 05 October

Time to update those CGIs again Tymm Twillman
SecurityFocus - reference: bugtraq id 689 (fwd) Alfred Huger
Re: RFP9903: AeDebug vulnerability Todd Sabin
Re: RFP9903: AeDebug vulnerability Pete Deuel
Re: MicroImages MIX X Server Jim Frost
Re: RFP9903: AeDebug vulnerability David LeBlanc
L0pht Advisory: Cactus Software - Shell-lock Mudge
SCO UnixWare 7.1 local root exploit Brock Tellier
Re: MicroImages MIX X Server Paul McGovern
Re: Fix for ssh-1.2.27 symlink/bind problem Dan Astoorian
NetScreen Brain-deadness... Ash
Re: One more weakness In "The Matrix" Screensaver For Windows asouza () HITECH COM BR
Re: Weakness In "The Matrix" Screensaver For Windows Charles quik Skoglund
Re: MicroImages MIX X Server Rich Lafferty
Re: Fix for ssh-1.2.27 symlink/bind problem Toomas Kiisk
Re: Time to update those CGIs again Robert G. Ferrell
Re: Time to update those CGIs again Chon-Chon Tang
Re: Weakness In "The Matrix" Screensaver For Windows Glenn Walker
Re: Weakness In "The Matrix" Screensaver For Windows Neon Bunny
Cactus Software's shell-lock Elias Levy
Auto_FTP v0.02 Advisory Ben
Re: mc bug Blackey
Re: RFP9903: AeDubug vulnerabilty Mark Dixon ext3456

Wednesday, 06 October

Omni-NFS/X Enterprise (nfsd.exe) DOS S.Faust
Re: Fix for ssh-1.2.27 symlink/bind problem Casper Dik
Re: ActiveX Buffer Overruns Chris
KSR[T] Advisories #012: Hybrid Network's Cable Modems KSR[T] Contact Account
Re: ActiveX Buffer Overruns and BSTR's Scott, Richard
Re: Fix for ssh-1.2.27 symlink/bind problem Wietse Venema
Fwd: [Re: RH6.0 local/remote command execution] Brock Tellier
RH6.0 local/remote command execution Neezam Haniff
Re: MicroImages MIX X Server H D Moore
Re: Time to update those CGIs again 3APA3A
ssh 1.2.26 x11-fwd dos (Re: MicroImages MIX X Server) Dan Frasnelli
Re: Omni-NFS/X Enterprise (nfsd.exe) DOS H D Moore
Re: NetScreen Brain-deadness... Dave McPike
Re: Sample DOS against the Sambar HTTP-Server Steve
Re: ActiveX Buffer Overruns and BSTR's Aviram Jenik
Re: Time to update those CGIs again Warren R. Carithers
Re: RFP9903: AeDebug vulnerability Stefan Norberg
Re: Fix for ssh-1.2.27 symlink/bind problem Phillip Vandry
Re: RFP9903: AeDebug vulnerability Joe Melhado
Re: ActiveX Buffer Overruns Todd Sabin
Re: Time to update those CGIs again Leif Sawyer
mail.com redirect problem Fey, Rodolfo Christian
Re: ActiveX Buffer Overruns Michael Nelson
Re: MicroImages MIX X Server Marcus Post
Roxen security alert Erik Parker

Thursday, 07 October

Re: RFP9903: AeDubug vulnerabilty David LeBlanc
Re: Omni-NFS/X Enterprise (nfsd.exe) DOS Mikael Olsson
Problems with redhat 6 Xsession and pam.d/rlogin. David Malone
Re: KSR[T] Advisories #012: Hybrid Network's Cable Modems Lars Kellogg-Stedman
Re: RFP9903: AeDebug vulnerability Enno Rey
StackGuarded Red Hat 5.2 Released Crispin Cowan
Re: Omni-NFS/X Enterprise (nfsd.exe) DOS H D Moore
Re: Everyone writable IIS root directory Nobuo Miwa

Friday, 08 October

Re: Time to update those CGIs again Wise Cat
Jana webserver exploit Jason Lutz
BUG: Win NT TCP/IP Security filters does not get enforced Stefan Norberg
Win95/98 and Novell client DoS Bruce Dennison
Re: Time to update those CGIs again Sam Carter
Re: RH6.0 local/remote command execution Danny Crawford
Re: KSR[T] Advisories #012: Hybrid Network's Cable Modems Derek J. Balling
Re: RH6.0 local/remote command execution D
Microsoft Security Bulletin (MS99-030) Aleph One
Microsoft Security Bulletin (MS99-040) Aleph One
Re: Win95/98 and Novell client DoS Michael Renner
Re: Win95/98 and Novell client DoS Gyorgy Camaszotisz, Novell DevNet SysOp 13
Re: Win95/98 and Novell client DoS Mike Richichi
Re: Win95/98 and Novell client DoS Richard Reiner
Re: Sample DOS against the Sambar HTTP-Server Dennis Conrad
Re: MicroImages MIX X Server Rich Lafferty

Saturday, 09 October

tcpdump under RedHat 6.1 Renaud Deraison
Re: Sample DOS against the Sambar HTTP-Server syz
Security Vulnerabilities with WebTrends ERS Manos Megagiannis
Re: BUG: Win NT TCP/IP Security filters does not get enforced Todd Sabin
Re: RFP9903: AeDubug vulnerabilty Mark Dixon

Sunday, 10 October

Re: BUG: Win NT TCP/IP Security filters does not get enforced Stefan Norberg
Weekly release: RDS exploit version 2 .rain.forest.puppy.

Monday, 11 October

NMRC Report: Commercial Vulnerability Scanners Simple Nomad
Re: RH6.0 local/remote command execution Brock Tellier
(no subject) Bruno Treguier
IE 5.0 security vulnerability - reading local (and from any domain, probably window spoofing is possible) files using IFRAME and document.execCommand Georgi Guninski
Re: MicroImages MIX X Server Dan Stromberg
SCO OpenServer 5.0.5 overwrite /etc/shadow Brock Tellier
Re: SCO OpenServer 5.0.5 overwrite /etc/shadow Bela Lubkin
Administrivia Elias Levy
Microsoft Security Bulletin (MS99-042) Aleph One

Tuesday, 12 October

Re: KSR[T] Advisories #012: Hybrid Network's Cable Modems Jon Paul, Nollmann
Security of "Virtual Network Computer" Mikael Olsson
Re: Weekly release: RDS exploit version 2 .rain.forest.puppy.
Re: RFP9903: AeDubug vulnerabilty Steve Coleman
Re: RH6.0 local/remote command execution Brock Tellier
SCO OpenServer 5.0.5 cancel overflow Brock Tellier
Re: BUG: Win NT TCP/IP Security filters does not get enforced Bill Stackpole
Re: BUG: Win NT TCP/IP Security filters does not get enforced David LeBlanc
Resistance is futile, or what I learned trying to secure the scanner David LeBlanc
Re: Your Message Sent on Mon, 11 Oct 1999 18:09:36 +0200 Darren Moffat
Re: RFP9903: AeDubug vulnerabilty David LeBlanc
I'm an idiot.... Shawn Tagseth
Re: Resistance is futile, or what I learned trying to secure the scanner Adam Shostack
Re: RFP9903: AeDubug vulnerabilty Jesper M. Johansson
Re: KSR[T] Advisories #012: Hybrid Network's Cable Modems Derek Balling
Re: SCO OpenServer 5.0.5 overwrite /etc/shadow Ralph the Wonder Llama
Resistance is futile, or what I learned trying to secure the scanner Blue Boar
SECURITY: RHSA-1999:040 New PAM packages available Cristian Gafton
Re: Security of "Virtual Network Computer" Cameron Simpson
Re: SCO OpenServer 5.0.5 overwrite /etc/shadow Bela Lubkin
Re: Security of "Virtual Network Computer" Dan Foster

Wednesday, 13 October

Re: Security of "Virtual Network Computer" Luca Berra
Xerox DocuColor 4 LP D.O.S Jason Lutz
Finjan Alert: WinNT.Infis Trojan by way of Tim Wieneke
The old "." problem nblasgen () NICK REFRACT COM
Re: WebTrends Enterprise Reporting Server Manos Megagiannis
Re: KSR[T] Advisories #012: Hybrid Network's Cable Modems Joe Shaw

Thursday, 14 October

Re: The old "." problem David Zverina
Re: RFP9903: AeDubug vulnerabilty David Zverina
Another Microsoft Java Flaw Disovered Gary McGraw
Secure syslog Darren Reed
NEUROCOM: Nashuatec printer, 3 vulnerabilities found gregory duchemin
Administrivia Elias Levy
PAM applications running as root (Was Re: WebTrends Enterprise Reporting Server) Darren Moffat

Friday, 15 October

Netscape 4.x buffer overflow Michael Breuer
Re: I'm an idiot.... Dirro, Toralv
Re: PAM applications running as root (Was Re: WebTrends Enterprise Alan Cox
OpenLink 3.2 Advisory Tymm Twillman
execve bug linux-2.2.12 ben () VALINUX COM
Re: OpenLink 3.2 Advisory Seth McGann
Re: execve bug linux-2.2.12 Perly
Re: execve bug linux-2.2.12 visi0n
Microsoft Security Bulletin (MS99-042) Aleph One

Saturday, 16 October

Re: execve bug linux-2.2.12 Alan Cox
Re: execve bug linux-2.2.12 ben () VALINUX COM
Re: execve bug linux-2.2.12 security () XIRR COM
Re: The old "." problem S.Faust

Sunday, 17 October

Re: Multiple vulnerabilities in CDE Nick_
[RHSA-1999:041-01] File access problems in lpr/lpd Bill Nottingham

Monday, 18 October

IE 5.0 allows reading local (and from any domain) files and window spoofing using HTTP redirection to "javascript:" Georgi Guninski
Gauntlet 5.0 BSDI warning Keith Young
THE 12th ANNUAL FIRST CONFERENCE michele sensalari
Re: OpenLine 3.2 Advisory Tymm Twillman
Re: Gauntlet 5.0 BSDI warning Strange
Re: execve bug linux-2.2.12 Matt Chapman
Debian: New version of mirror fixes remote exploit Aleph One
Debian: New version of amd fixes remote exploit, take 2 Aleph One
Re: Gauntlet 5.0 BSDI warning Keith Young
Re: Update to ODBC/RDS vulnerabilities (fwd) .rain.forest.puppy.
xmonisdn (isdn4k-utils/Linux) bug report Ron van Daal
Netscape 4.x buffer overflow Max Vision
Re: Microsoft Security Bulletin (MS99-043) David Schwartz
Microsoft Security Bulletin (MS99-043) Aleph One

Tuesday, 19 October

Re: Gauntlet 5.0 BSDI warning Shivdasani, Meenoo
Re: mirror 2.9 hole Stefan Kelm
Email virus on the prowel Albert Hopkins
Re: Email virus on the prowl .rain.forest.puppy.
Re: execve bug linux-2.2.12 Taneli Huuskonen

Wednesday, 20 October

Last weeks release: whisker (new web scanner) rfp () WIRETRIP NET
Re: xmonisdn (isdn4k-utils/Linux) bug report Ron van Daal
Re: mirror 2.9 hole jcp
Re: xmonisdn (isdn4k-utils/Linux) bug report Jan-Hendrik Terstegge
Re: recent SCO 5.0.x vulnerabilities Jon Mitchell
Checkpoint FireWall-1 V4.0: possible bug in LDAP authentication Olaf Selke
Re: execve bug linux-2.2.12 Timo Felbinger
Re: Email virus on the prowel Elias Levy
CERT Advisory CA-99.13 - Multiple Vulnerabilities in WU-FTPD Aleph One
Re: execve bug linux-2.2.12 Alan Cox
DoS in Eicon ISDN Modem is now fixed Aviram Jenik
Re: [Re: xmonisdn (isdn4k-utils/Linux) bug report] Brock Tellier
Re: amd remote root exploit code Crispin Cowan
Re: [Re: xmonisdn (isdn4k-utils/Linux) bug report] Antonomasia
Microsoft Security Bulletin (MS99-044) Aleph One
Re: CERT Advisory CA-99.13 - Multiple Vulnerabilities in WU-FTPD Richard Trott
Remote DoS in Axent's Raptor 6.0 Mike Frantzen
Re: recent SCO 5.0.x vulnerabilities Michael Almond
Re: Problems with redhat 6 Xsession and pam.d/rlogin. Ari Gordon-Schlosberg
Compaq Alpha Bounds Checking Crispin Cowan
Re: Compaq Alpha Bounds Checking Solar Designer
[RHSA-1999:042-01] screen defaults to not using Unix98 ptys Bill Nottingham

Thursday, 21 October

[support_feedback () us-support external hp com: Security Bulletins Digest] Patrick Oonk
Hotmail security vulnerability Pete Krawczyk
Re: Compaq Alpha Bounds Checking Crispin Cowan
Re: CERT Advisory CA-99.13 - Multiple Vulnerabilities in WU-FTPD Chad Price
Re: CERT Advisory CA-99.13 - Multiple Vulnerabilities in WU-FTPD Rami Dass
(no subject) Cristian Gafton
Re: Hotmail security vulnerability Dan Schrader
Re: CERT Advisory CA-99.13 - Multiple Vulnerabilities in WU-FTPD Gregory A Lundberg
Re: Compaq Alpha Bounds Checking Brett Lymn
Re: Hotmail security vulnerability Microsoft Product Security Response Team
Microsoft Security Bulletin (MS99-045) Aleph One
Imagemap CGI overflow exploit UNYUN
Re: Hotmail security vulnerability Dr. Dave

Friday, 22 October

Local user can send forged packets Marc SCHAEFER
Re: Imagemap CGI overflow exploit John LoVerso
HP automountd security bulletin dsiebert () ENGINEERING UIOWA EDU
Re: Hotmail security vulnerability (viruses) Thejian
Re: CERT Advisory CA-99.13 - Multiple Vulnerabilities in WU-FTPD Gregory A Lundberg
Microsoft Security Bulletin (MS99-046) Aleph One

Saturday, 23 October

Re: Local user can send forged packets Pavel Kankovsky
[slackware-security] CA-99-13: wu-ftpd upgrade available (fwd) Rafael Rodrigues Obelheiro
Re: xmonisdn (isdn4k-utils/Linux) bug report Florian Weimer

Sunday, 24 October

[slackware-security] CA-99-13: minimal fix for Slackware 3.5 through 4.0 (fwd) Rafael Rodrigues Obelheiro
SuSE Security Announcement - ypserv Marc Heuse
password leak in IBM WebSphere / HTTP Server / ikeyman Major Malfunction
Linux kernel source problem Alex Popa

Monday, 25 October

RFP9905: Zeus webserver remote root compromise .rain.forest.puppy.
[squid] external authentication security issue Oezguer Kesim
IBM AIX Packet Filter module Brumbles
Re: Linux kernel source problem Alessandro Rubini
Re: Local user can send forged packets Alan Cox
Re: Fix for ssh-1.2.27 symlink/bind problem Markus Friedl
Re: Fix for ssh-1.2.27 symlink/bind problem Wietse Venema
e/pop vulnerability chaos 255
Re: Imagemap CGI overflow exploit Thomas Reinke
Re: Hotmail security vulnerability (viruses) Nick FitzGerald
Re: HP automountd security bulletin Bennett Todd

Tuesday, 26 October

RFP9905: Zeus webserver remote root compromise Julian Midgley
Mac OS 9 Idle Lock Bug Sean Sosik-Hamor
Falcon Web Server Advisory
predictable ip->id patch antirez
Re: IBM AIX Packet Filter module Troy A. Bollinger
Re: Linux kernel source problem Peter W
Re: Hotmail security vulnerability (viruses) Sweeney, Patrick
Re: Fix for ssh-1.2.27 symlink/bind problem Markus Friedl
Re: Linux kernel source problem David F. Skoll
Re: Fix for ssh-1.2.27 symlink/bind problem Markus Friedl
Re: Fix for ssh-1.2.27 symlink/bind problem Wietse Venema
Re: Remote DoS in Axent's Raptor 6.0 Inc, MSG.Net
Re: Hotmail security vulnerability (viruses) Dan Schrader
Re: CERT Advisory CA-99.13 - Multiple Vulnerabilities in WU-FTPD Charles M. Richmond

Wednesday, 27 October

Re: HP automountd security bulletin Valdis.Kletnieks () VT EDU
Re: Local user can send forged packets Solar Designer
Re: Mac OS 9 Idle Lock Bug devbugs () APPLE COM
Re: Hotmail security vulnerability (viruses) Elias Levy
Re: HP automountd security bulletin Byron Miller
Re: IBM AIX Packet Filter module jaimec () US IBM COM
Re: Remote DoS in Axent's Raptor 6.0 der Mouse
Re: Fix for ssh-1.2.27 symlink/bind problem Wietse Venema
Re: IBM AIX Packet Filter module (followup) Brumbles
NT SP6 Ben Greenbaum
(no subject) Bill Nottingham

Thursday, 28 October

WFTPD v2.40 FTPServer remotely exploitable buffer overflow vulnerability Luciano Martins
Re: Remote DoS in Axent's Raptor 6.0 Kuff, Hal
URL Live! 1.0 WebServer UNYUN
Blocking IP Options (was Re: Remote DoS in Axent's Raptor 6.0) kadokev () MSG NET
IE 5.0 cross-frame vulnerabilities back again Francis Favorini
Netscape Messaging Server RCPT TO vul. Nobuo Miwa
Re: Netscape Messaging Server RCPT TO vul. Alan Brown

Friday, 29 October

AW: Mac OS 9 Idle Lock Bug Flothow, Sebastian
Re: Fix for ssh-1.2.27 symlink/bind problem Casper Dik
DoS attack for ircd's by oversized PTR record Goblin
Re: Fix for ssh-1.2.27 symlink/bind problem Eivind Eklund
Re: Netscape Messaging Server RCPT TO vul. Nobuo Miwa