oss-sec: by date

206 messages starting Feb 15 08 and ending Mar 31 08
Date index | Thread index | Author index


Friday, 15 February

welcome Solar Designer
Re: welcome Josh Bressers
Re: welcome Jonathan Smith

Saturday, 16 February

wiki Solar Designer
Re: welcome Solar Designer
Re: welcome Solar Designer
Re: welcome Josh Bressers

Sunday, 17 February

list archive Solar Designer
Re: welcome Vincent Danen
Re: wiki Vincent Danen
Re: list archive Vincent Danen

Monday, 18 February

code review CVS Sebastian Krahmer
Re: wiki Solar Designer
Re: wiki Vincent Danen
Re: code review CVS Vincent Danen
Re: wiki (GalaxyMaster)
Re: wiki Vincent Danen
Re: wiki (GalaxyMaster)
Re: wiki Solar Designer
Re: wiki Josh Bressers
Re: wiki - e-mail address obfuscation Solar Designer
FAQ for upstream maintainers Jonathan Smith
charter Jonathan Smith
Re: list archive Solar Designer
Re: code review CVS Sebastian Krahmer

Tuesday, 19 February

subscription-request procedure? Jim Meyering
Re: subscription-request procedure? Josh Bressers
Re: charter Josh Bressers
Re: charter Mark J Cox
Re: wiki - e-mail address obfuscation Solar Designer
Re: wiki - e-mail address obfuscation (GalaxyMaster)
Re: wiki Vincent Danen
Re: wiki Vincent Danen
Re: charter Vincent Danen
Re: list archive Vincent Danen
Re: subscription-request procedure? Vincent Danen
Re: FAQ for upstream maintainers Solar Designer
Re: subscription-request procedure? Kees Cook
Re: charter - advisories Solar Designer
Re: charter - advisories Josh Bressers
Re: subscription-request procedure? Solar Designer
Re: subscription-request procedure? Solar Designer
Re: subscription-request procedure? Josh Bressers
Re: subscription-request procedure? Kees Cook
Re: subscription-request procedure? (GalaxyMaster)
Re: subscription-request procedure? Kees Cook
Re: subscription-request procedure? (GalaxyMaster)
message Subjects (was: subscription-request procedure?) Solar Designer

Wednesday, 20 February

Re: FAQ for upstream maintainers Josh Bressers
Re: subscription-request procedure? Jim Meyering
Re: charter - advisories Vincent Danen
Re: code review CVS Vincent Danen
Re: subscription-request procedure? Vincent Danen
Re: FAQ for upstream maintainers Vincent Danen
CVE request: cups Jonathan Smith
Re: CVE request: cups Josh Bressers
Re: code review CVS Kees Cook
Re: code review CVS Vincent Danen

Thursday, 21 February

Re: code review CVS Pierre-Yves Rofes
Re: code review CVS Mark J Cox
Acrobat Reader 8.1.2 tmp racy wrapper script Marcus Meissner
Re: code review CVS Kees Cook
Re: code review CVS Vincent Danen
Re: extracting patches from SRPMs (Was: code review CVS) (GalaxyMaster)
Re: Acrobat Reader 8.1.2 tmp racy wrapper script Steven M. Christey
CVE request for mysql bug #22413 Jamie Strandboge
Re: CVE request for mysql bug #22413 Jonathan Smith
Re: CVE Help (CVE request for mysql bug #22413) Josh Bressers
first spam message on the list Solar Designer
Re: first spam message on the list Josh Bressers
Re: first spam message on the list Vincent Danen
CVE-2008-0416 for mozilla-firefox; details request Vincent Danen
Re: CVE-2008-0416 for mozilla-firefox; details request Josh Bressers
Re: moderation Jonathan Smith
Re: moderation Solar Designer

Friday, 22 February

Re: first spam message on the list Thomas Biege
Re: code review CVS Tomas Hoger
Re: code review CVS Kees Cook
Re: CVE Help Solar Designer
CVE request: lighttpd Jonathan Smith

Sunday, 24 February

Re: list archive Solar Designer
Re: charter - advisories Solar Designer
flaw disclosure (was: FAQ for upstream maintainers) Solar Designer
Re: code review CVS Solar Designer
Re: list archive Solar Designer
Re: list archive Vincent Danen
Re: code review CVS Vincent Danen
Re: charter - advisories Vincent Danen

Monday, 25 February

Re: charter - advisories Mark J Cox
wiki page/namespace names (GalaxyMaster)
Re: wiki page/namespace names Josh Bressers
Re: wiki page/namespace names, wiki feature requests, etc. (GalaxyMaster)
Re: wiki page/namespace names, wiki feature requests, etc. Josh Bressers
Re: wiki page/namespace names, wiki feature requests, etc. (GalaxyMaster)
Re: CVE Help (CVE request for mysql bug #22413) Steven M. Christey

Tuesday, 26 February

Re: CVE request for mysql bug #22413 Steven M. Christey
Re: CVE request: lighttpd Steven M. Christey
CVE request: vlc Nico Golde
Re: CVE request: vlc Steven M. Christey
Re: CVE request: vlc Nico Golde
Re: wiki page/namespace names, wiki feature requests, etc. Vincent Danen
Re: wiki page/namespace names, wiki feature requests, etc. Vincent Danen

Thursday, 28 February

CVE ids for Opera 9.26 security update? Marcus Meissner
Re: CVE ids for Opera 9.26 security update? Steven M. Christey

Sunday, 02 March

CVE request: lighttpd mod_cgi script source disclosure Robert Buchholz
Re: CVE request: lighttpd mod_cgi script source disclosure Steven M. Christey

Tuesday, 04 March

request CVE id: insecure handling of DISPLAY in rxvt Nico Golde
Re: request CVE id: insecure handling of DISPLAY in rxvt Steven M. Christey
Re: request CVE id: insecure handling of DISPLAY in rxvt Steve Kemp
CVE? CCE? dovecot setting is often used incorrectly Jonathan Smith

Wednesday, 05 March

Re: request CVE id: insecure handling of DISPLAY in rxvt Matthieu Herrb
Re: request CVE id: insecure handling of DISPLAY in rxvt Tomas Hoger
Re: request CVE id: insecure handling of DISPLAY in rxvt Steve Kemp
wiki: Debian, auditing tools, vendor-sec Solar Designer
Re: list archive Robert Buchholz
Re: list archive Solar Designer
Re: wiki: Debian, auditing tools, vendor-sec Steve Kemp
Re: request CVE id: insecure handling of DISPLAY in rxvt Nico Golde
Re: request CVE id: insecure handling of DISPLAY in rxvt Nico Golde

Thursday, 06 March

CVE Request Josh Bressers
Re: CVE Request Steven M. Christey
Attack vector exploiting rxvt defaulting to :0 Bernhard R. Link

Saturday, 08 March

Re: CVE? CCE? dovecot setting is often used incorrectly Florian Weimer
Re: CVE? CCE? dovecot setting is often used incorrectly Robert Buchholz

Sunday, 09 March

CVE request: dovecot unauthorized login Jonathan Smith
Re: list archive Solar Designer
Re: CVE? CCE? dovecot setting is often used incorrectly Steven M. Christey
Re: CVE request: dovecot unauthorized login Steven M. Christey
CVE request: ruby information disclosure Jonathan Smith

Monday, 10 March

Re: CVE request: ruby information disclosure Tomas Hoger
CVE request: yet another lighttpd issue Jonathan Smith
Re: CVE request: yet another lighttpd issue Steven M. Christey
Re: CVE request: dovecot unauthorized login Steven M. Christey
Re: CVE request: dovecot unauthorized login Jonathan Smith
Re: CVE request: dovecot unauthorized login Steven M. Christey

Tuesday, 11 March

CVE request: multiple issues in ViewVC Pierre-Yves Rofes
CVE request: insecure X11 handling in ltsp Nico Golde
CVE request: setrlimit can be avoided (Linux less than 2.6.22) Kees Cook

Wednesday, 12 March

Re: CVE request: setrlimit can be avoided (Linux less than 2.6.22) Florian Weimer
Re: CVE request: multiple issues in ViewVC Steven M. Christey
Re: CVE request: insecure X11 handling in ltsp Steven M. Christey
Re: CVE request: setrlimit can be avoided (Linux less than 2.6.22) Steven M. Christey

Tuesday, 18 March

new archive file format research by Oulo university Marcus Meissner
CVE request: bzip2 CERT-FI: 20469 Robert Buchholz
Re: CVE request: bzip2 CERT-FI: 20469 Josh Bressers
Re: CVE request: bzip2 CERT-FI: 20469 Steven M. Christey

Wednesday, 19 March

Re: CVE request: bzip2 CERT-FI: 20469 Josh Bressers

Thursday, 20 March

webapp vulns with no cve Hanno Böck

Saturday, 22 March

CVE Request: openssh local users may hijack forwarded X connections Micah Anderson
CVE Request: PHP PECL module APC vulnerable to stack-based buffer overflow Micah Anderson

Monday, 24 March

SA29489 CenterIM URL handling flaw Lubomir Kundrak
CVE Request: xine-lib multiple buffer overflows Lubomir Kundrak
CVE Request: namazu UTF-7 XSS Lubomir Kundrak
Re: CVE Request: xine-lib multiple buffer overflows Steven M. Christey
Re: CVE Request: namazu UTF-7 XSS Steven M. Christey
Re: CVE Request: openssh local users may hijack forwarded X connections Steven M. Christey
Re: webapp vulns with no cve Steven M. Christey
Re: CVE Request: PHP PECL module APC vulnerable to stack-based buffer overflow Steven M. Christey

Tuesday, 25 March

Need CVEs for joomla, egroupware Hanno Böck
Re: Need CVEs for joomla, egroupware Nico Golde
Re: Need CVEs for joomla, egroupware Nico Golde
Re: Need CVEs for joomla, egroupware Pierre-Yves Rofes
Re: Need CVEs for joomla, egroupware Nico Golde
was: SA29489 CenterIM URL handling flaw Nico Golde
Re: was: SA29489 CenterIM URL handling flaw Nico Golde
firefox 2.0.0.13 Jonathan Smith
Re: firefox 2.0.0.13 Josh Bressers
Re: firefox 2.0.0.13 Vincent Danen

Wednesday, 26 March

Re: was: SA29489 CenterIM URL handling flaw Lubomir Kundrak
CVE request: lighttpd DoS: forcefully closing of foreign SSL connections Christian Hoffmann
CVE Request: Perlbal DoS Lubomir Kundrak
CVE request: GnuPG Import Key Memory Corruption Robert Buchholz
Re: request CVE id: insecure handling of DISPLAY in rxvt Robert Buchholz
Re: firefox 2.0.0.13 Steven M. Christey

Thursday, 27 March

Re: firefox 2.0.0.13 Josh Bressers
Re: firefox 2.0.0.13 Steven M. Christey
Re: CVE request: GnuPG Import Key Memory Corruption Steven M. Christey
Re: was: SA29489 CenterIM URL handling flaw Steven M. Christey
using oss-security references in CVE Steven M. Christey
Re: CVE Request: Perlbal DoS Steven M. Christey
CVEs for zzuf crashers? Hanno Böck
Re: using oss-security references in CVE Lubomir Kundrak
Re: Need CVEs for joomla, egroupware Steven M. Christey
Re: using oss-security references in CVE Vincent Danen
Re: using oss-security references in CVE Solar Designer
Re: using oss-security references in CVE Nico Golde
Re: CVEs for zzuf crashers? Nico Golde
Re: was: SA29489 CenterIM URL handling flaw Nico Golde
CVE request: policyd-weight insecure temporary file creation Robert Buchholz
Re: using oss-security references in CVE Josh Bressers
wiki: links from list archive (was: using oss-security references in CVE) Solar Designer
change subscription address Zenaan Harkness
Re: change subscription address Solar Designer
Re: wiki: links from list archive (was: using oss-security references in CVE) Josh Bressers

Friday, 28 March

CVE request: silc Ludwig Nussel
Re: CVE request: silc Lubomir Kundrak
Re: request CVE id: insecure handling of DISPLAY in rxvt Bernhard R. Link
Re: CVE request: lighttpd DoS: forcefully closing of foreign SSL connections Christian Hoffmann
project announcement - oCERT - Open Source CERT Andrea Barisani

Sunday, 30 March

CVE request: phpmyadmin (PMASA-2008-2) Hanno Böck

Monday, 31 March

CVE id request: comix Nico Golde
Re: CVE request: silc Steven M. Christey
Re: CVE request: lighttpd DoS: forcefully closing of foreign SSL connections Steven M. Christey
Re: CVE request: phpmyadmin (PMASA-2008-2) Steven M. Christey
Re: CVE id request: comix Steven M. Christey
Re: CVE request: policyd-weight insecure temporary file creation Steven M. Christey