oss-sec: by date

390 messages starting Mar 31 08 and ending Jun 30 08
Date index | Thread index | Author index


Monday, 31 March

Re: CVE id request: comix Nico Golde

Tuesday, 01 April

Re: CVE id request: comix Tomas Hoger
CVE id request: mod_suphp Tomas Hoger
CVE Request: otrs authentication bypass Ludwig Nussel
Re: CVE Request: otrs authentication bypass Tomas Hoger
CVE id request: squid Tomas Hoger
Re: CVE Request: otrs authentication bypass Ludwig Nussel
Re: CVE id request: comix Nico Golde
Re: CVE id request: squid Steven M. Christey

Wednesday, 02 April

Re: CVE id request: mod_suphp Steven M. Christey
CVE request: openssh "ForceCommand" improperly implemented Jonathan Smith
Re: CVE request: openssh "ForceCommand" improperly implemented Steven M. Christey
Re: CVE request: openssh "ForceCommand" improperly implemented Florian Weimer

Friday, 04 April

Re: announcing oCERT & oss-security to Bugtraq & f-d Jonathan Smith
Re: announcing oCERT & oss-security to Bugtraq & f-d Solar Designer
announcing oss-security to Bugtraq & f-d Solar Designer
Re: announcing oCERT & oss-security to Bugtraq & f-d Vincent Danen
Re: "who shouldn't be on-list" security curmudgeon
Re: Re: "who shouldn't be on-list" Jonathan Smith
Re: announcing oCERT & oss-security to Bugtraq & f-d Andrea Barisani
Re: announcing oss-security to Bugtraq & f-d Andrea Barisani
Re: announcing oCERT & oss-security to Bugtraq & f-d Solar Designer
wiki: vendor info Solar Designer
Re: wiki: vendor info security curmudgeon
Re: announcing oCERT & oss-security to Bugtraq & f-d Josh Bressers
Re: wiki: vendor info Josh Bressers
Re: wiki: vendor info lyger
Re: announcing oCERT & oss-security to Bugtraq & f-d Josh Bressers
Re: announcing oCERT & oss-security to Bugtraq & f-d Vincent Danen
Re: Re: "who shouldn't be on-list" Vincent Danen
Re: wiki: vendor info Vincent Danen

Saturday, 05 April

Re: wiki: search for FIXME tags (Was: announcing oCERT & oss-security to Bugtraq & f-d) (GalaxyMaster)
Re: wiki: vendor info (GalaxyMaster)
Re: wiki: vendor info security curmudgeon
list: members vs. read-only subscribers Solar Designer
Re: wiki: vendor info & osvdb.org/vendors Solar Designer
Re: wiki: vendor info & osvdb.org/vendors Solar Designer
Re: wiki: vendor info & osvdb.org/vendors security curmudgeon

Sunday, 06 April

[oCERT 2008-02] libfishsound insufficient boundary checks Andrea Barisani
Security fixes in m4-1.4.11 Patrick J. Volkerding
Re: [oCERT 2008-02] libfishsound insufficient boundary checks Steven M. Christey
Re: Security fixes in m4-1.4.11 Steven M. Christey

Monday, 07 April

Re: Security fixes in m4-1.4.11 Lubomir Kundrak
Re: [oCERT 2008-02] libfishsound insufficient boundary Andrea Barisani
gcc 4.2 optimizations and integer overflow checks Josh Bressers
Re: gcc 4.2 optimizations and integer overflow checks Steven M. Christey
Re: gcc 4.2 optimizations and integer overflow checks Marcus Meissner
Re: gcc 4.2 optimizations and integer overflow checks Nico Golde
Re: list: members vs. read-only subscribers Josh Bressers
Re: gcc 4.2 optimizations and integer overflow checks Solar Designer
Re: Security fixes in m4-1.4.11 Florian Weimer

Tuesday, 08 April

Re: announcing oCERT & oss-security to Bugtraq & f-d Solar Designer
Re: announcing oCERT & oss-security to Bugtraq & f-d Andrea Barisani
Re: list: members vs. read-only subscribers Solar Designer
Re: announcing oCERT & oss-security to Bugtraq & f-d Josh Bressers
Re: announcing oCERT & oss-security to Bugtraq & f-d Andrea Barisani
Re: list: members vs. read-only subscribers Josh Bressers
Re: announcing oCERT & oss-security to Bugtraq & f-d Solar Designer
wiki: pagemove, reconfiguration of default word separator for page names (GalaxyMaster)
CVE Request (rsync) Josh Bressers

Wednesday, 09 April

Re: gcc 4.2 optimizations and integer overflow checks Nico Golde
Re: list: members vs. read-only subscribers Vincent Danen

Thursday, 10 April

buffer overflow in Python zlib extension module Jonathan Smith
Re: CVE Request (rsync) Steven M. Christey
Re: gcc 4.2 optimizations and integer overflow checks Steven M. Christey
Re: buffer overflow in Python zlib extension module Steven M. Christey
CVE requests: drupal and phpbb Hanno Böck
CVE request: openfire <3.5.0 Denial of Service Robert Buchholz
CVE request: Swfdec <0.6.4 remote file disclosure Robert Buchholz
CVE request: Opera <9.27 Multiple issues Robert Buchholz

Friday, 11 April

Re: Security fixes in m4-1.4.11 Josh Bressers
Re: gcc 4.2 optimizations and integer overflow checks Florian Weimer

Saturday, 12 April

Re: CVE request: Opera <9.27 Multiple issues Steven M. Christey
Re: CVE request: openfire <3.5.0 Denial of Service Steven M. Christey
CVE request: tss <= 0.8.1-3: arbitary file reading Steve Kemp
Re: CVE requests: drupal and phpbb Steven M. Christey
Re: CVE request: Opera <9.27 Multiple issues Robert Buchholz

Sunday, 13 April

[oCERT-2008-003] libpng zero-length chunks incorrect handling Andrea Barisani

Tuesday, 15 April

CVE id request - clamav Tomas Hoger
clamav: Endless loop / hang with crafter arj, CVE-2008-1387 Hanno Böck
CVE id request: cecilia insecure temporary file usage Nico Golde
CVE id request: xine-lib insufficient boundary check in speex decoder Nico Golde
Re: CVE id request: xine-lib insufficient boundary check in speex decoder Steven M. Christey

Wednesday, 16 April

Re: CVE id request: cecilia insecure temporary file usage Steven M. Christey
Re: CVE request: Swfdec <0.6.4 remote file disclosure Steven M. Christey
Re: CVE id request - clamav Steven M. Christey

Thursday, 17 April

[oCERT-2008-004] multiple speex implementations insufficient boundary checks Andrea Barisani
CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector) Hanno Böck
Re: CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector) Tomas Hoger
Re: CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector) Josh Bressers
CVE id request: xine-lib <= 1.1.12 nsf handling Hanno Böck
Re: CVE request: tss <= 0.8.1-3: arbitary file reading Nico Golde
Re: CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector) Steven M. Christey
Re: CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector) Hanno Böck
Re: CVE request: tss <= 0.8.1-3: arbitary file reading Steven M. Christey
CVE request: DBMail <2.2.9 Matthias Geerdsen
Re: CVE request: DBMail <2.2.9 Steven M. Christey
Re: CVE id request: xine-lib <= 1.1.12 nsf handling Steven M. Christey
Re: CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector) Steven M. Christey

Friday, 18 April

Re: CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector) Hanno Böck
Re: gcc 4.2 optimizations and integer overflow checks Marcus Meissner
CSRF vulnerability in ikiwiki Florian Weimer
Re: gcc 4.2 optimizations and integer overflow checks Solar Designer

Sunday, 20 April

Re: CSRF vulnerability in ikiwiki Florian Weimer
Re: CSRF vulnerability in ikiwiki Steven M. Christey
Re: gcc 4.2 optimizations and integer overflow checks Richard Guenther
CVE request:Perl bug #48156 Jonathan Smith

Monday, 21 April

audit log injection attack via login Josh Bressers

Tuesday, 22 April

Re: list: members vs. read-only subscribers Josh Bressers
CVE Request: inspircd Micah Anderson
Re: list: members vs. read-only subscribers Solar Designer
Re: list: members vs. read-only subscribers Jonathan Smith
Re: list: members vs. read-only subscribers Solar Designer

Wednesday, 23 April

CVE request: phpmyadmin PMASA-2008-3 Hanno Böck
Re: list: members vs. read-only subscribers Josh Bressers
Re: CVE request: phpmyadmin PMASA-2008-3 Steven M. Christey
web archives Steven M. Christey
Re: CVE Request: inspircd Steven M. Christey
Re: audit log injection attack via login Steven M. Christey
Re: CVE request:Perl bug #48156 Steven M. Christey
Re: web archives Jonathan Smith
seclists.org archive request: oss-security Jonathan Smith
Re: CVE Request: inspircd security curmudgeon
Re: seclists.org archive request: oss-security security curmudgeon
Re: web archives security curmudgeon
Re: web archives security curmudgeon
Re: CVE Request: inspircd Micah Anderson

Thursday, 24 April

Re: CVE request:Perl bug #48156 Florian Weimer

Friday, 25 April

CVE request: licq denial of service Marcus Meissner
Re: list: members vs. read-only subscribers Josh Bressers

Sunday, 27 April

CVE request: horde-kronolith-2.1.7 XSS in addevent.php Matt Fleming

Monday, 28 April

Re: CVE request: insecure X11 handling in ltsp Nico Golde

Tuesday, 29 April

CVE id request: wordpress Nico Golde
CVE request: egroupware Hanno Böck

Wednesday, 30 April

security problem in ESP fragment handling? Marcus Meissner
Re: security problem in ESP fragment handling? Steven M. Christey
Re: CVE request: insecure X11 handling in ltsp Steven M. Christey
Re: CVE request: egroupware Steven M. Christey
Re: security problem in ESP fragment handling? Marcus Meissner
Re: security problem in ESP fragment handling? Mark J Cox
Re: security problem in ESP fragment handling? Marcus Meissner
asterisk dupe? Moritz Muehlenhoff

Friday, 02 May

CVE-2008-0553 / CVE-2006-4484 also affects tkimg Tomas Hoger
CVE Request (PHP) Josh Bressers
Re: CVE Request (PHP) Steven M. Christey
Re: group announcement (was: list: members vs. read-only subscribers) Josh Bressers
Re: group announcement (was: list: members vs. read-only subscribers) Vincent Danen
Re: group announcement Jonathan Smith
Re: group announcement (was: list: members vs. read-only subscribers) Steven M. Christey
Re: group announcement (was: list: members vs. read-only subscribers) Josh Bressers
Re: group announcement Jonathan Smith

Sunday, 04 May

Re: group announcement Josh Bressers

Monday, 05 May

Re: group announcement Jim Meyering
CVE id request - mysql Tomas Hoger
Re: CVE id request - mysql Steven M. Christey
Re: asterisk dupe? Steven M. Christey

Tuesday, 06 May

CVE id request - libid3tag Tomas Hoger
Re: Re: CVE Request (PHP) Robert Buchholz
openssh CVE-2008-1657 question Vincent Danen
Re: openssh CVE-2008-1657 question Nico Golde
Re: openssh CVE-2008-1657 question Vincent Danen

Wednesday, 07 May

CVE request: Bugzilla (Unauthorized Bug Change, XSS, Account Impersonation) Christian Hoffmann
CVE-2008-0352 is a dup of CVE-2007-4567 Kees Cook
Re: CVE request: Bugzilla (Unauthorized Bug Change, XSS, Account Impersonation) Steven M. Christey
Re: CVE id request - libid3tag Steven M. Christey

Thursday, 08 May

CVE-2008-1615 reproducer? Marcus Meissner
Re: CVE-2008-0352 is a dup of CVE-2007-4567 Mark J Cox
Re: CVE-2008-1615 reproducer? Mark J Cox
Re: Re: CVE Request (PHP) Robert Buchholz
Re: Re: CVE Request (PHP) Robert Buchholz
Re: CVE id request: wordpress Nico Golde

Friday, 09 May

versions affected by CVE-2008-1675 - update Nico Golde
Multiples vulnerabilities in wordnet Pierre-Yves Rofes
Re: Multiples vulnerabilities in wordnet Ben Haskell

Saturday, 10 May

CVE request: Linux vfs: fix permission checking in sys_utimensat Robert Buchholz
CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Robert Buchholz
CVE id request: vlc local privilege escalation Nico Golde

Monday, 12 May

Re: group announcement Solar Designer
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Nico Golde
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Robert Buchholz
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Nico Golde
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Steven M. Christey
Re: CVE id request: wordpress Steven M. Christey
Re: CVE id request: vlc local privilege escalation Steven M. Christey
Re: CVE request: Linux vfs: fix permission checking in sys_utimensat Steven M. Christey
Re: Multiples vulnerabilities in wordnet Steven M. Christey

Tuesday, 13 May

Re: Re: CVE request: Bugzilla (Unauthorized Bug Change, XSS, Account Impersonation) Hanno Böck
Re: Re: CVE request: Bugzilla (Unauthorized Bug Change, XSS, Account Impersonation) Tomas Hoger
Re: Re: CVE request: Bugzilla (Unauthorized Bug Change, XSS, Account Impersonation) Steven M. Christey
CVE id request: uudeview Nico Golde
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Robert Buchholz

Wednesday, 14 May

CVE id request: Django Cross-Site Scripting Pierre-Yves Rofes
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Nico Golde
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Sven Joachim
Re: Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Nico Golde
Re: Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Tavis Ormandy
vim $TMPDIR directory stat (was: [oss-security] Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution) Nico Golde
Re: Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Gustavo De Nardin (spuk)
Re: CVE request: Emacs 21 fast-lock-mode arbitrary lips code execution Sven Joachim
Re: CVE id request: uudeview Nico Golde

Friday, 16 May

OpenSSH key blacklisting Solar Designer
Re: OpenSSH key blacklisting Craig Edwards (Brain)
Re: OpenSSH key blacklisting Solar Designer
Re: OpenSSH key blacklisting Vincent Danen
Re: OpenSSH key blacklisting Robert Buchholz
Re: OpenSSH key blacklisting Gustavo De Nardin (spuk)
Re: OpenSSH key blacklisting Solar Designer
Re: OpenSSH key blacklisting Solar Designer
Re: OpenSSH key blacklisting Gustavo De Nardin (spuk)

Saturday, 17 May

Re: OpenSSH key blacklisting Robert Buchholz
Re: OpenSSH key blacklisting Solar Designer
Re: OpenSSH key blacklisting Robert Buchholz
Re: OpenSSH key blacklisting Solar Designer

Sunday, 18 May

Re: CVE id request: Django Cross-Site Scripting Steven M. Christey
Re: CVE id request: uudeview Steven M. Christey
CVE id request: apache2 Nico Golde
Re: OpenSSH key blacklisting Kees Cook
Re: CVE id request: apache2 Mark J Cox
Re: OpenSSH key blacklisting Kees Cook
Re: OpenSSH key blacklisting Solar Designer

Monday, 19 May

CVE ID request: GNUTLS Florian Weimer
Re: OpenSSH key blacklisting Kees Cook
Re: OpenSSH key blacklisting Kees Cook
Re: CVE ID request: GNUTLS Jonathan Smith

Tuesday, 20 May

Re: CVE ID request: GNUTLS Simon Josefsson
Re: CVE ID request: GNUTLS Tomas Hoger
Re: CVE ID request: GNUTLS Mark J Cox
Re: OpenSSH key blacklisting Matthias Andree
CVE request: mtr Jonathan Smith
Re: CVE request: mtr Robert Buchholz
Re: CVE request: mtr security curmudgeon
Re: CVE request: mtr Jonathan Smith
Re: CVE request: mtr Jonathan Smith
Re: CVE request: mtr Steven M. Christey
CVE assignments during May Steven M. Christey

Wednesday, 21 May

Root name server changes -> bind Marcus Meissner
vsftpd CVE-2007-5962 (Red Hat / Fedora specific) Tomas Hoger
[vendor-sec] [oss-security] New Xen ioemu: PVFB backend issue Jan Lieskovsky
Re: vsftpd CVE-2007-5962 (Red Hat / Fedora specific) Jonathan Smith
Re: Root name server changes -> bind Jonathan Smith
Re: vsftpd CVE-2007-5962 (Red Hat / Fedora specific) Josh Bressers
Re: Root name server changes -> bind Steven M. Christey
Re: Root name server changes -> bind security curmudgeon
Re: vsftpd CVE-2007-5962 (Red Hat / Fedora specific) Steven M. Christey
Re: vsftpd CVE-2007-5962 (Red Hat / Fedora specific) Jonathan Smith

Thursday, 22 May

Re: Root name server changes -> bind Mark J Cox
Re: Root name server changes -> bind Florian Weimer
Re: Root name server changes -> bind Thijs Kinkhorst
Re: Root name server changes -> bind Jonathan Smith
Re: Root name server changes -> bind Florian Weimer

Friday, 23 May

Re: Root name server changes -> bind Marcus Meissner

Saturday, 24 May

CVE-2008-2292 net-snmp __snprint_value Nico Golde
Re: CVE-2008-2292 net-snmp __snprint_value Nico Golde
CVE id request: libpam-pgsql Nico Golde

Sunday, 25 May

CVE id request: xscreensaver Steffen Joeris
CVE id request: cbrpager Tomas Hoger
Re: CVE id request: xscreensaver Tomas Hoger
Re: CVE id request: xscreensaver Steffen Joeris
Re: CVE id request: xscreensaver Nico Golde
Re: CVE id request: xscreensaver Bernhard R. Link

Monday, 26 May

Re: CVE id request: cbrpager Robert Buchholz
update on CVE-2008-2424 Nico Golde

Tuesday, 27 May

Security, Open Source Style Josh Bressers
Re: Security, Open Source Style Josh Bressers
Re: OpenSSH key blacklisting Solar Designer
Re: OpenSSH key blacklisting Dmitry V. Levin

Wednesday, 28 May

Re: Security, Open Source Style Steven M. Christey
Re: OpenSSH key blacklisting Tim Brown
Re: OpenSSH key blacklisting Sebastian Krahmer
Re: OpenSSH key blacklisting Nathanael Hoyle
Re: OpenSSH key blacklisting Florian Weimer

Thursday, 29 May

CVE-2008-2363: pan - heap overflow Pavel Polischouk

Friday, 30 May

Re: CVE id request: uudeview Robert Buchholz
Latest flash player is not vulnerable Eren Türkay
Re: Latest flash player is not vulnerable security curmudgeon
CVE id request: ikiwiki Nico Golde

Saturday, 31 May

Re: OpenSSH key blacklisting Mike Frysinger
Re: CVE id request: ikiwiki Martin Schulze

Monday, 02 June

ARP handler Inspection tool released Andrea Di Pasquale
SQL_injection detection tool released MARE system Security
Re: ARP handler Inspection tool released Nico Golde
code reviews (was: ARP handler Inspection tool released) Solar Designer
Re: code reviews (was: ARP handler Inspection tool released) Andrea Barisani
Re: code reviews (was: ARP handler Inspection tool released) Chris Rohlf
Re: code reviews (was: ARP handler Inspection tool released) Nico Golde
Re: code reviews (was: ARP handler Inspection tool released) Andrea Barisani
Re: code reviews (was: ARP handler Inspection tool released) Nico Golde
Re: ARP handler Inspection tool released Jonathan Smith
Re: OpenSSH key blacklisting Tim Brown
Re: OpenSSH key blacklisting Sebastian Krahmer

Tuesday, 03 June

Re: code reviews (was: ARP handler Inspection tool released) Steve Kemp
tool announcements (was: ARP handler Inspection tool released) Solar Designer
Re: tool announcements (was: ARP handler Inspection tool released) Solar Designer
Re: code reviews (was: ARP handler Inspection tool released) Solar Designer
Re: tool announcements (was: ARP handler Inspection tool released) Steven M. Christey
Re: tool announcements Jonathan Smith
Re: tool announcements Pierre-Yves Rofes
Re: tool announcements Steven M. Christey

Wednesday, 04 June

Re: tool announcements (was: ARP handler Inspection tool released) Michael Simpson
CVE id request: slash Steffen Joeris
Re: OpenSSH key blacklisting Nathanael Hoyle
Python Unsafe Module Loading Ned Ludd
Re: CVE id request: slash Steffen Joeris
Re: OpenSSH key blacklisting The Fungi
Re: OpenSSH key blacklisting Nathanael Hoyle
Re: OpenSSH key blacklisting Jonathan Smith

Thursday, 05 June

Re: Python Unsafe Module Loading Robert Buchholz
Re: Python Unsafe Module Loading Ned Ludd
Re: Python Unsafe Module Loading Florian Weimer
Re: Python Unsafe Module Loading Robert Buchholz

Sunday, 08 June

CVE-Request: courier-authlib sql injection Hanno Böck
Re: CVE-Request: courier-authlib sql injection Robert Buchholz

Monday, 09 June

[oCERT-2008-006] multiple SNMP implementations HMAC authentication spoofing Andrea Barisani

Tuesday, 10 June

exploitability of off-by-one in motion webserver Nico Golde
FreeType 2.3.6 Josh Bressers
Re: exploitability of off-by-one in motion webserver Solar Designer
Re: FreeType 2.3.6 Josh Bressers
Re: exploitability of off-by-one in motion webserver Nico Golde
Re: exploitability of off-by-one in motion webserver Steven M. Christey
Re: CVE-Request: courier-authlib sql injection Steven M. Christey

Wednesday, 11 June

CVE id request: nasm off-by-one Nico Golde
Re: CVE id request: nasm off-by-one Eren Türkay

Thursday, 12 June

CVE id request: TYPO3-20080611-1: Multiple vulnerabilities in TYPO3 Core Thijs Kinkhorst
CVE id request: menalto gallery Hanno Böck
Re: CVE id request: nasm off-by-one Marcus Meissner
malloc and heap corruption pandora

Friday, 13 June

CVE Id Request: fetchmail <= 6.3.8 DoS when logging long headers in -v -v mode Matthias Andree

Saturday, 14 June

CVE request: Opera 9.50 Marcus Meissner
Re: CVE request: Opera 9.50 Nico Golde

Sunday, 15 June

Re: CVE Id Request: fetchmail <= 6.3.8 DoS when logging long headers in -v -v mode Robert Buchholz
CVE id request: Clamav Steffen Joeris

Monday, 16 June

Re: CVE Id Request: fetchmail <= 6.3.8 DoS when logging long headers in -v -v mode Matthias Andree
CVE Id request: vim Jamie Strandboge
Re: CVE id request: Clamav Tomas Hoger
Re: CVE Id request: vim Jamie Strandboge
Re: CVE Id Request: fetchmail <= 6.3.8 DoS when logging long headers in -v -v mode Jonathan Smith
Re: CVE Id Request: fetchmail <= 6.3.8 DoS when logging long headers in -v -v mode Steven M. Christey
Re: CVE Id request: vim Steven M. Christey
Re: CVE id request: Clamav Steven M. Christey
Re: CVE request: Opera 9.50 Steven M. Christey
Re: CVE id request: TYPO3-20080611-1: Multiple vulnerabilities in TYPO3 Core Steven M. Christey
Re: CVE id request: nasm off-by-one Steven M. Christey
Re: CVE id request: menalto gallery Steven M. Christey

Tuesday, 17 June

Re: FreeType 2.3.6 Thomas Biege
Re: FreeType 2.3.6 Tomas Hoger
Re: FreeType 2.3.6 Thomas Biege
Re: CVE id request: Clamav Eren Türkay
Re: CVE Id Request: fetchmail <= 6.3.8 DoS when logging long headers in -v -v mode Matthias Andree
Re: CVE id request: Clamav Eren Türkay
Re: FreeType 2.3.6 Steven M. Christey
Re: CVE id request: Clamav Török Edwin

Wednesday, 18 June

query on a pppol2tp_recvmsg() fix - security relevant? Marcus Meissner
Re: query on a pppol2tp_recvmsg() fix - security relevant? Eren Türkay

Thursday, 19 June

CVE Request: Critical vuln in Firefox 3.0 Hanno Böck
Re: CVE Request: Critical vuln in Firefox 3.0 Nico Golde
Re: query on a pppol2tp_recvmsg() fix - security relevant? Jan Lieskovsky
CVE request: php 5.2.6 safe_mode bypass Hanno Böck
Re: CVE request: php 5.2.6 safe_mode bypass Nico Golde
CVE request: php 5.2.6 ext/imap buffer overflows Christian Hoffmann
Re: New Xen ioemu: PVFB backend issue Nico Golde
Re: CVE Request: Critical vuln in Firefox 3.0 Steven M. Christey

Friday, 20 June

CVE id request: tmsnc Nico Golde
Re: CVE id request: tmsnc Eren Türkay
Re: CVE id request: tmsnc Nico Golde

Saturday, 21 June

CVE id request: perl Steffen Joeris

Monday, 23 June

Re: CVE Id Request: fetchmail <= 6.3.8 DoS when logging long headers in -v -v mode Tomas Hoger
CVE request: phpmyadmin < 2.11.7 XSS Hanno Böck
Re: CVE id request: perl Steven M. Christey
Re: CVE id request: tmsnc Steven M. Christey
Re: New Xen ioemu: PVFB backend issue Steven M. Christey
Re: CVE request: php 5.2.6 ext/imap buffer overflows Steven M. Christey
Re: query on a pppol2tp_recvmsg() fix - security relevant? Steven M. Christey

Tuesday, 24 June

Re: [vendor-sec] Re: [oss-security] New Xen ioemu: PVFB backend issue Robert Buchholz
Re: CVE request: php 5.2.6 ext/imap buffer overflows Christian Hoffmann
ruby regression (was: Re: [vendor-sec] Ruby memory corruption bugs in array and string handling) Jonathan Smith
Re: ruby regression (was: Re: [vendor-sec] Ruby memory corruption bugs in array and string handling) Drew Yao

Thursday, 26 June

CVE-2008-2365 kernel: ptrace: Crash on PTRACE_{ATTACH,DETACH} race -- affecting kernel versions <= 2.6.25 Jan Lieskovsky

Friday, 27 June

CVE id request: checkinstall Steffen Joeris
Squid advisory Josh Bressers
CVE Request (pidgin) Josh Bressers

Sunday, 29 June

Two remote DoS issues in linuxdcpp Robert Buchholz

Monday, 30 June

CVE id request mercurial:Insufficient input validation Steffen Joeris
CVE-2008-2375 older vsftpd authentication memory leak Mark J Cox
openldap DoS Ludwig Nussel
Re: openldap DoS Josh Bressers
Re: CVE id request mercurial:Insufficient input validation Steven M. Christey
Re: [vendor-sec] Re: patch sets for recent ruby vulnerabilities Jamie Strandboge
CVE request for dnsmasq DoS Jamie Strandboge
Re: patch sets for recent ruby vulnerabilities Jamie Strandboge
Re: patch sets for recent ruby vulnerabilities Jamie Strandboge