oss-sec: by author

358 messages starting Nov 26 08 and ending Nov 10 08
Date index | Thread index | Author index


Andrea Barisani

Re: xine-lib and ocert-2008-008 Andrea Barisani (Nov 26)

Andreas Ericsson

Re: CVE request: Nagios (two issues) Andreas Ericsson (Nov 13)
CVE request: Nagios (two issues) Andreas Ericsson (Nov 06)
Re: CVE Request (nagios) Andreas Ericsson (Dec 10)
Re: CVE Request (syslog-ng) Andreas Ericsson (Nov 17)
Re: CVE Request (nagios) Andreas Ericsson (Dec 08)
Re: CVE Request (nagios) Andreas Ericsson (Dec 10)
Re: CVE request: Nagios (two issues) Andreas Ericsson (Nov 11)
Re: CVE Request (nagios) Andreas Ericsson (Dec 08)
Re: CVE Request (syslog-ng) Andreas Ericsson (Nov 18)

Chris Evans

Re: CVE Request - Python string expandtabs Chris Evans (Nov 05)

Christian Hoffmann

GeSHi: Clarification about the recent security (non-)issues (SA32559) Christian Hoffmann (Nov 10)
Re: Re: CVE Request - roundcubemail Christian Hoffmann (Dec 15)
CVE request: mantisbt < 1.1.4: RCE Christian Hoffmann (Oct 19)

Craig

CVE Request / Question Craig (Oct 30)

Daniel P. Berrange

Re: CVE Request (xen) Daniel P. Berrange (Oct 04)

Daniel Veillard

Re: libxml2 "ampproblem" DoS Daniel Veillard (Oct 03)

dann frazier

Re: CVE request: kernel: Unix sockets kernel panic dann frazier (Nov 21)

Darren Salt

Re: Bug#498243: xine-lib and ocert-2008-008 Darren Salt (Nov 26)

David Remahl

CVE for SE-2008-06 in PHP 5.2.7 (ZipArchive) David Remahl (Dec 04)

Eugene Teo

CVE request: kernel: watchdog: ib700wdt.c - buffer_underflow bug Eugene Teo (Dec 09)
Re: CVE-2008-3528 Linux kernel ext[234] directory corruption DoS Eugene Teo (Oct 20)
CVE request: kernel: MIPS: Fix potential DOS by untrusted user app Eugene Teo (Dec 08)
CVE request: kernel: sctp: Fix oops when INIT-ACK indicates that peer doesn't support AUTH Eugene Teo (Oct 07)
Re: CVE request: kernel: V4L/DVB (9621): Avoid writing outside shadow.bytes[] array Eugene Teo (Nov 18)
Re: CVE request: kernel: sctp: Fix kernel panic while process protocol violation parameter Eugene Teo (Oct 20)
Re: CVE request: kernel: Unix sockets kernel panic Eugene Teo (Dec 01)
Re: CVE request: kernel: sctp: Fix kernel panic while process protocol violation parameter Eugene Teo (Oct 20)
CVE request: kernel: enforce a minimum SG_IO timeout Eugene Teo (Dec 08)
CVE request: kernel: sctp: Fix kernel panic while process protocol violation parameter Eugene Teo (Oct 06)
CVE request: kernel: soft lockup occurs when network load is very high Eugene Teo (Dec 23)
CVE-2008-3833 kernel: remove SUID when splicing into an inode Eugene Teo (Oct 02)
Re: CVE request: kernel: watchdog: ib700wdt.c - buffer_underflow bug Eugene Teo (Dec 21)
CVE-2008-3832 kernel: null pointer dereference in utrace_control Eugene Teo (Oct 01)
CVE request: kernel: don't allow splice() to files opened with O_APPEND Eugene Teo (Oct 12)
CVE request: kernel: applicom: fix an unchecked user ioctl range Eugene Teo (Dec 09)
Fwd: CVE-2008-5079: multiple listen()s on same socket corrupts the vcc table Eugene Teo (Dec 05)
CVE request: kernel: x86: Fix broken LDT access in VMI Eugene Teo (Oct 03)
Re: CVE request: kernel: applicom: fix an unchecked user ioctl range Eugene Teo (Dec 16)
Re: CVE requests: kernel: hfsplus-related bugs Eugene Teo (Nov 10)
Re: CVE requests: kernel: hfsplus-related bugs Eugene Teo (Nov 10)
CVE request: kernel: fix soft lockups/OOM issues with unix garbage collector Eugene Teo (Nov 27)
Re: CVE request: kernel: Unix sockets kernel panic Eugene Teo (Nov 11)
CVE request: kernel: libertas: fix buffer overrun Eugene Teo (Nov 10)
Notes about CVE-2008-5033 Eugene Teo (Nov 16)
Re: CVE request: kernel: V4L/DVB (9621): Avoid writing outside shadow.bytes[] array Eugene Teo (Nov 20)
Re: CVE-2008-3528 Linux kernel ext[234] directory corruption DoS Eugene Teo (Oct 20)
Re: CVE request: kernel: applicom: fix an unchecked user ioctl range Eugene Teo (Dec 16)
CVE request: kernel: V4L/DVB (9621): Avoid writing outside shadow.bytes[] array Eugene Teo (Nov 16)
Re: CVE requests: kernel: hfsplus-related bugs Eugene Teo (Nov 09)
Re: CVE request: kernel: watchdog: ib700wdt.c - buffer_underflow bug Eugene Teo (Dec 16)
CVE request: kernel: Unix sockets kernel panic Eugene Teo (Nov 06)
CVE requests: kernel: hfsplus-related bugs Eugene Teo (Nov 03)

Eygene Ryabinkin

Re: CVE id request: verlihub Eygene Ryabinkin (Dec 27)
Re: CVE Request (nagios) Eygene Ryabinkin (Dec 08)
Re: CVE Request (ssh) Eygene Ryabinkin (Nov 21)
Re: CVE request: CUPS DoS via RSS subscriptions Eygene Ryabinkin (Nov 19)
Re: CVE Request (nagios) Eygene Ryabinkin (Dec 08)
Re: CVE Request (nagios) Eygene Ryabinkin (Dec 08)
Re: CVE request: cups - potential integer overflow in PNG image reader [was: CUPS DoS via RSS subscriptions] Eygene Ryabinkin (Nov 25)
Re: CVE Request - cups, dovecot-managesieve, perl, wireshark Eygene Ryabinkin (Nov 30)
Re: CVE Request (nagios) Eygene Ryabinkin (Dec 10)
Re: CVE Request (nagios) Eygene Ryabinkin (Dec 10)
Re: CVE Request - cups, dovecot-managesieve, perl, wireshark Eygene Ryabinkin (Dec 02)
Re: CVE request: CUPS DoS via RSS subscriptions Eygene Ryabinkin (Nov 20)
Re: CVE Request (nagios) Eygene Ryabinkin (Dec 08)
Re: CVE request: CUPS DoS via RSS subscriptions Eygene Ryabinkin (Nov 20)
Re: CVE Request - cups, dovecot-managesieve, perl, wireshark Eygene Ryabinkin (Nov 30)

Florian Weimer

Re: CVE Request (zaptel) Florian Weimer (Dec 03)
Re: Re: CVE Request - roundcubemail Florian Weimer (Dec 13)
Re: Re: CVE Request - roundcubemail Florian Weimer (Dec 13)
CVE request: weak PRNG in GNU Classpath Florian Weimer (Dec 06)
Re: Re: CVE Request - roundcubemail Florian Weimer (Dec 13)
Re: Re: CVE Request - roundcubemail Florian Weimer (Dec 28)
Re: Re: CVE Request - roundcubemail Florian Weimer (Dec 15)
Re: Re: CVE Request - roundcubemail Florian Weimer (Dec 17)

Gerfried Fuchs

CVE id request: sabre Gerfried Fuchs (Oct 01)
blosxom XSS issue (CVE-2008-2236) Gerfried Fuchs (Oct 02)

Greg KH

Re: CVE requests: kernel: hfsplus-related bugs Greg KH (Nov 11)
Re: CVE requests: kernel: hfsplus-related bugs Greg KH (Nov 11)

Hanno Böck

Re: CVE request phpmyadmin (Fwd: XSS in phpMyadmin) Hanno Böck (Oct 29)
CVE request: XSS in mediawiki 1.13.1 and 1.12.0 Hanno Böck (Oct 02)
CVE req: drupal < 5.11/6.5 Hanno Böck (Oct 21)
Re: CVE request phpmyadmin (Fwd: XSS in phpMyadmin) Hanno Böck (Oct 28)
CVE request: crashers / potential security risks in mplayer Hanno Böck (Oct 07)
CVE req: another drupal one (<5.12/6.6) Hanno Böck (Oct 23)
CVE request: xss in phpmyid 0.9 Hanno Böck (Oct 08)
data-destroiny malfunction: is that a "security" issue Hanno Böck (Oct 06)
CVE request phpmyadmin (Fwd: XSS in phpMyadmin) Hanno Böck (Oct 27)
CVE request (Fwd: MyBB 1.4.2: Multiple Vulnerabilties) Hanno Böck (Nov 01)
CVE request: phpMyAdmin < 3.1.1.0 (SQL injection through XSRF on several pages ) Hanno Böck (Dec 09)
Re: CVE req: phpmyadmin < 2.11.9.2 xss Hanno Böck (Oct 01)
CVE request: moodle (XSS) Hanno Böck (Dec 09)
CVE request: Four issues in PunBB Hanno Böck (Dec 09)
CVE request: tikiwiki < 2.2 Hanno Böck (Dec 01)

Jamie Strandboge

Re: CVE request for ecryptfs Jamie Strandboge (Oct 29)
CVE request: jhead Jamie Strandboge (Oct 15)
CVE request for ecryptfs Jamie Strandboge (Oct 23)

Jan Lieskovsky

CVE request - Vim netrw.plugin Jan Lieskovsky (Oct 16)
CVE Request -- wireshark Jan Lieskovsky (Nov 24)
Re: CVE request: cups - potential integer overflow in PNG image reader [was: CUPS DoS via RSS subscriptions] Jan Lieskovsky (Nov 25)
Re: Re: CVE Request - roundcubemail Jan Lieskovsky (Dec 17)
CVE Request - tor Jan Lieskovsky (Dec 08)
CVE request (vim) Jan Lieskovsky (Oct 20)
ruby CVE-2008-4310 (Red Hat specific) Jan Lieskovsky (Dec 04)
CVE Request -- Xen (Upstream patch for CVE-2008-4405 is incomplete) Jan Lieskovsky (Dec 19)
CVE Request - ecryptfs-utils Jan Lieskovsky (Nov 18)
Re: CVE Request - cups, dovecot-managesieve, perl, wireshark Jan Lieskovsky (Nov 28)
Re: Re: CVE Request - roundcubemail Jan Lieskovsky (Dec 15)
Vim CVE issues cleanup (plugins tar.vim, zip.vim) - CVE-2008-3074 and CVE-2008-3075 Jan Lieskovsky (Oct 15)
CVE request -- Python imageop#3 Jan Lieskovsky (Oct 27)
Re: CVE Request (nagios) Jan Lieskovsky (Dec 08)
(sort of urgent) CVE Request -- cups (repost) Jan Lieskovsky (Dec 01)
CVE request - (vim : netrw plugin - ftp user credentials disclosure) Jan Lieskovsky (Oct 06)
CVE Request - rsyslog Jan Lieskovsky (Dec 08)
CVE Request - Python string expandtabs Jan Lieskovsky (Nov 05)
CVE Request - Incomplete dahdi/zaptel tor2.c patch for CVE-2008-5396 Jan Lieskovsky (Dec 19)
CVE Request - Python imageop Jan Lieskovsky (Oct 29)
CVE Request -- OptiPNG Jan Lieskovsky (Nov 12)
CVE Request - cups, dovecot-managesieve, perl, wireshark Jan Lieskovsky (Nov 28)
Re: CVE id request: htop Jan Lieskovsky (Nov 14)
CVE Request - Zope 2 - PythonScripts local DoS Jan Lieskovsky (Nov 12)
Re: CVE Request (nagios) Jan Lieskovsky (Dec 11)
CVE Request - roundcubemail Jan Lieskovsky (Dec 12)
Re: CVE Request - rsyslog ($allowedSender issue repost + imudp DoS) Jan Lieskovsky (Dec 15)

Jeremias Reith

CVE requset: WordPress XSS vulnerability in RSS Feed Generator Jeremias Reith (Nov 26)
Re: CVE requset: WordPress XSS vulnerability in RSS Feed Generator Jeremias Reith (Nov 28)

John Dong

Re: CVE request: jhead John Dong (Oct 16)

Josh Bressers

Re: CVE request: CUPS DoS via RSS subscriptions Josh Bressers (Nov 19)
CVE Request (syslog-ng) Josh Bressers (Nov 17)
dbus DoS (CVE-2008-3834) Josh Bressers (Oct 06)
CVE Request (netpbm) Josh Bressers (Oct 22)
Re: CVE Request (netpbm) Josh Bressers (Oct 23)
CVE Request (nagios) Josh Bressers (Dec 05)
CVE Request (dovecot) Josh Bressers (Oct 29)
Re: CVE Request (xen) Josh Bressers (Oct 03)
CVE Request (zaptel) Josh Bressers (Dec 03)
CVE Request (ssh) Josh Bressers (Nov 18)
CVE Request (nfs-utils) Josh Bressers (Oct 13)
CVE Request Josh Bressers (Oct 10)
lynx lynxcgi handler flaw Josh Bressers (Oct 09)
New net-snmp DoS Josh Bressers (Oct 31)
Re: Mozilla CVE duplicate Josh Bressers (Oct 08)

Kees Cook

CVE request: CUPS DoS via RSS subscriptions Kees Cook (Nov 19)

lists () haquarter de

CVE-2008-4324 lists () haquarter de (Oct 08)

Ludwig Nussel

CVE Request: ruby on rails header injection Ludwig Nussel (Nov 19)
CVE Request: VirtualBox tmp file issue Ludwig Nussel (Nov 24)

Marcus Meissner

CVE request: clamav 0.94.2 Marcus Meissner (Dec 01)
Re: Re: CVE request: kernel: applicom: fix an unchecked user ioctl range Marcus Meissner (Dec 17)
Re: CVE Request - ecryptfs-utils Marcus Meissner (Nov 21)
Re: CVE Request: Opera 9.60 with security fixes Marcus Meissner (Oct 21)
Re: CVE request: kernel: watchdog: ib700wdt.c - buffer_underflow bug Marcus Meissner (Dec 17)
Re: CVE request: kernel: sctp: Fix oops when INIT-ACK indicates that peer doesn't support AUTH Marcus Meissner (Oct 15)
CVE Request: Opera 9.60 with security fixes Marcus Meissner (Oct 21)

Matthias Hopf

Re: xine-lib and ocert-2008-008 Matthias Hopf (Nov 24)

Mauro Carvalho Chehab

Re: CVE request: kernel: V4L/DVB (9621): Avoid writing outside shadow.bytes[] array Mauro Carvalho Chehab (Nov 21)

Michael R Sweet

Re: CVE request: CUPS DoS via RSS subscriptions Michael R Sweet (Nov 20)

Michael Sweet

Re: CVE request: CUPS DoS via RSS subscriptions Michael Sweet (Nov 21)
Re: CVE request: CUPS DoS via RSS subscriptions Michael Sweet (Nov 19)

Miklos Vajna

Re: CVE id request: proftpd Miklos Vajna (Oct 02)

Moritz Muehlenhoff

Re: CVE Request: VirtualBox tmp file issue Moritz Muehlenhoff (Nov 24)
CVE request: Quassel IRC client Moritz Muehlenhoff (Dec 07)
Mozilla CVE duplicate Moritz Muehlenhoff (Oct 07)
CVE requests: Typo3 Moritz Muehlenhoff (Dec 07)
Re: Mozilla CVE duplicate Moritz Muehlenhoff (Oct 08)

Nico Golde

Re: CVE id request: vlc Nico Golde (Oct 22)
CVE id request: vlc Nico Golde (Oct 19)
Re: xine-lib and ocert-2008-008 Nico Golde (Nov 28)
Re: CVE id request: verlihub Nico Golde (Dec 27)
Re: CVE Request (dovecot) Nico Golde (Nov 04)
CVE id request: vlc Nico Golde (Nov 05)
Re: xine-lib and ocert-2008-008 Nico Golde (Dec 03)
Re: CVE id request: htop Nico Golde (Nov 15)
Re: CVE id request: vlc Nico Golde (Nov 10)
CVE id request: vlc Nico Golde (Oct 14)
Re: xine-lib and ocert-2008-008 Nico Golde (Dec 03)
Re: data-destroiny malfunction: is that a "security" issue Nico Golde (Oct 06)
Re: xine-lib and ocert-2008-008 Nico Golde (Dec 03)
Re: CVE request - uw-imap Nico Golde (Nov 03)
regarding CVE-2008-4382 & CVE-2008-4381 Nico Golde (Oct 03)
Re: CVE id request: php-xajax Nico Golde (Dec 17)
Re: regarding CVE-2008-4382 & CVE-2008-4381 Nico Golde (Oct 03)
CVE id request: another geshi issue (was: [oss-security] GeSHi: Clarification about the recent security (non-)issues (SA32559)) Nico Golde (Nov 20)
Re: xine-lib and ocert-2008-008 Nico Golde (Nov 28)
Re: CVE id request: php-xajax Nico Golde (Dec 17)
CVE id request: htop Nico Golde (Nov 02)
CVE id request: audiofile Nico Golde (Dec 30)
Re: CVE Request: imlib2 Nico Golde (Nov 20)
Re: CVE request - uw-imap Nico Golde (Nov 03)
Re: CVE id request: php-xajax Nico Golde (Dec 17)

Pinar Yanardag

Re: CVE Request -- wireshark Pinar Yanardag (Nov 25)

Pınar Yanardağ

Re: CVE Request: imlib2 Pınar Yanardağ (Nov 21)
CVE Request: imlib2 Pınar Yanardağ (Nov 20)
CVE Request (libsamplerate) Pınar Yanardağ (Nov 03)

Raphael Geissert

CVE id request: chm2pdf insecure temporary files usage Raphael Geissert (Nov 20)
CVE id request: verlihub Raphael Geissert (Dec 16)
Re: Re: CVE Request - roundcubemail Raphael Geissert (Dec 16)
CVE id request: gpsdrive Raphael Geissert (Dec 16)
Re: CVE Request - roundcubemail Raphael Geissert (Dec 13)
CVE request: no-ip DUC buffer overflow Raphael Geissert (Nov 20)
CVE request: wordpress can be subject of delayed attacks via cookies Raphael Geissert (Nov 13)
CVE id request/update: mailscanner: many scripts allow local users to overwrite arbitrary files via symlink attacks Raphael Geissert (Nov 29)

Rémi Denis-Courmont

Re: CVE id request: vlc Rémi Denis-Courmont (Nov 11)
VideoLAN security advisory 0810 Rémi Denis-Courmont (Nov 05)

Robert Buchholz

Re: Re: libxml2 "ampproblem" DoS Robert Buchholz (Oct 03)
CVE requests: tempfile issues for aview, mgetty, openoffice, crossfire Robert Buchholz (Oct 30)
Regarding SA32329 (Smarty "_expand_quoted_text()" Security Bypass) Robert Buchholz (Oct 25)
libxml2 "ampproblem" DoS Robert Buchholz (Oct 02)
Re: CVE request - pdfjam Robert Buchholz (Dec 28)
Not a security issue: htpdate "buffer overflow" Robert Buchholz (Oct 25)
Re: amarok temp file vuln Robert Buchholz (Oct 04)
Re: Re: libxml2 "ampproblem" DoS Robert Buchholz (Oct 06)
Re: CVE request: jhead Robert Buchholz (Nov 26)

Solar Designer

Re: CVE Request (syslog-ng) Solar Designer (Nov 17)

Steffen Joeris

Re: CVE requset: WordPress XSS vulnerability in RSS Feed Generator Steffen Joeris (Nov 28)
CVE id request: qemu Steffen Joeris (Oct 13)
CVE-2008-4796: snoopy triage Steffen Joeris (Nov 01)
Re: Regarding SA32329 (Smarty "_expand_quoted_text()" Security Bypass) Steffen Joeris (Nov 04)
Re: CVE id request: php-xajax Steffen Joeris (Dec 17)
CVE id request: mon Steffen Joeris (Oct 04)
CVE id request: blender Steffen Joeris (Oct 26)
CVE id request: php-xajax Steffen Joeris (Dec 17)
duplicates: CVE-2008-4406 and CVE-2008-4407 [sabre insecure temp file] Steffen Joeris (Oct 04)
Re: CVE requset: WordPress XSS vulnerability in RSS Feed Generator Steffen Joeris (Nov 28)

Steve Kemp

CVE request: mplayer Steve Kemp (Dec 16)

Steven M. Christey

Re: CVE id request: php-xajax Steven M. Christey (Dec 17)
Re: CVE request: kernel: V4L/DVB (9621): Avoid writing outside shadow.bytes[] array Steven M. Christey (Nov 20)
XSS in HTML Tidy plugin used in WYSIWYG HTML editors Steven M. Christey (Oct 27)
Re: CVE Request (ssh) Steven M. Christey (Nov 20)
Re: CVE Request: ruby on rails header injection Steven M. Christey (Nov 20)
Re: CVE request: crashers / potential security risks in mplayer Steven M. Christey (Oct 20)
Re: XSS in HTML Tidy plugin used in WYSIWYG HTML editors Steven M. Christey (Oct 27)
Re: CVE id request: mon Steven M. Christey (Oct 07)
Re: CVE Request (xen) Steven M. Christey (Oct 03)
Re: Re: CVE request: kernel: applicom: fix an unchecked user ioctl range Steven M. Christey (Dec 17)
Re: CVE id request: vlc Steven M. Christey (Nov 11)
Re: CVE request: kernel: soft lockup occurs when network load is very high Steven M. Christey (Dec 24)
Re: CVE request: Nagios (two issues) Steven M. Christey (Nov 12)
Re: CVE id request: another geshi issue (was: [oss-security] GeSHi: Clarification about the recent security (non-)issues (SA32559)) Steven M. Christey (Nov 20)
Re: CVE request: tikiwiki < 2.2 Steven M. Christey (Dec 03)
Re: CVE Request Steven M. Christey (Oct 15)
Re: CVE Request - rsyslog ($allowedSender issue repost + imudp DoS) Steven M. Christey (Dec 16)
Re: Regarding SA32329 (Smarty "_expand_quoted_text()" Security Bypass) Steven M. Christey (Nov 04)
Re: CVE requset: WordPress XSS vulnerability in RSS Feed Generator Steven M. Christey (Nov 28)
Re: CVE Request - tor Steven M. Christey (Dec 16)
Re: CVE request: kernel: Unix sockets kernel panic Steven M. Christey (Nov 10)
Re: CVE request: kernel: watchdog: ib700wdt.c - buffer_underflow bug Steven M. Christey (Dec 24)
Re: CVE id request: vlc Steven M. Christey (Oct 22)
Re: CVE request: libcdaudio Steven M. Christey (Nov 10)
Re: CVE Request: imlib2 Steven M. Christey (Nov 20)
Re: CVE request: Four issues in PunBB Steven M. Christey (Dec 16)
Re: CVE id request: qemu Steven M. Christey (Oct 14)
Re: data-destroiny malfunction: is that a "security" issue Steven M. Christey (Oct 08)
Re: Re: CVE Request - roundcubemail Steven M. Christey (Dec 24)
Re: GeSHi: Clarification about the recent security (non-)issues (SA32559) Steven M. Christey (Nov 20)
Re: CVE request: clamav get_unicode_name() off-by-one buffer overflow Steven M. Christey (Nov 20)
Re: CVE Request - Python string expandtabs Steven M. Christey (Nov 10)
Re: CVE request phpmyadmin (Fwd: XSS in phpMyadmin) Steven M. Christey (Oct 28)
Re: CVE request: kernel: libertas: fix buffer overrun Steven M. Christey (Nov 20)
Re: CVE request: kernel: sctp: Fix oops when INIT-ACK indicates that peer doesn't support AUTH Steven M. Christey (Oct 15)
Re: CVE Request: Opera 9.60 with security fixes Steven M. Christey (Oct 22)
Re: CVE Request: imlib2 Steven M. Christey (Nov 20)
Re: CVE id request/update: mailscanner: many scripts allow local users to overwrite arbitrary files via symlink attacks Steven M. Christey (Dec 03)
Re: duplicates: CVE-2008-4406 and CVE-2008-4407 [sabre insecure temp file] Steven M. Christey (Oct 07)
Re: Mozilla CVE duplicate Steven M. Christey (Oct 07)
Re: CVE id request: vlc Steven M. Christey (Nov 10)
Re: CVE Request Steven M. Christey (Oct 15)
Re: CVE requests: kernel: hfsplus-related bugs Steven M. Christey (Nov 10)
Re: CVE requests: kernel: hfsplus-related bugs Steven M. Christey (Nov 10)
Re: CVE request: kernel: fix soft lockups/OOM issues with unix garbage collector Steven M. Christey (Dec 01)
Re: xine-lib and ocert-2008-008 Steven M. Christey (Nov 25)
Re: CVE Request - cups, dovecot-managesieve, perl, wireshark Steven M. Christey (Dec 01)
Re: CVE request: kernel: watchdog: ib700wdt.c - buffer_underflow bug Steven M. Christey (Dec 16)
Re: Re: libxml2 "ampproblem" DoS Steven M. Christey (Oct 07)
Re: (sort of urgent) CVE Request -- cups (repost) Steven M. Christey (Dec 01)
Re: CVE id request: htop Steven M. Christey (Nov 14)
Re: CVE-2008-4619 / milw0rm6775 Steven M. Christey (Oct 31)
Re: CVE requset: WordPress XSS vulnerability in RSS Feed Generator Steven M. Christey (Nov 28)
Re: CVE Request -- OptiPNG Steven M. Christey (Nov 20)
Re: CVE request: jhead Steven M. Christey (Oct 15)
Re: CVE Request (nfs-utils) Steven M. Christey (Oct 14)
Re: Re: libxml2 "ampproblem" DoS Steven M. Christey (Oct 03)
Re: CVE request: lcms (old issues) Steven M. Christey (Dec 03)
Re: CVE requests: kernel: hfsplus-related bugs Steven M. Christey (Nov 10)
Re: CVE request: strongswam denial-of-service Steven M. Christey (Oct 14)
Re: CVE Request (syslog-ng) Steven M. Christey (Nov 17)
Re: CVE id request: vlc Steven M. Christey (Oct 14)
Re: CVE request: kernel: applicom: fix an unchecked user ioctl range Steven M. Christey (Dec 16)
Re: CVE request: mplayer Steven M. Christey (Dec 16)
Re: CVE request: mantisbt < 1.1.4: RCE Steven M. Christey (Oct 22)
Re: CVE request: no-ip DUC buffer overflow Steven M. Christey (Dec 01)
Re: CVE id request: php-xajax Steven M. Christey (Dec 17)
Re: CVE id request: php-xajax Steven M. Christey (Dec 17)
Re: CVE request: jhead Steven M. Christey (Oct 22)
Re: CVE id request: verlihub Steven M. Christey (Dec 24)
Re: CVE Request -- Xen (Upstream patch for CVE-2008-4405 is incomplete) Steven M. Christey (Dec 24)
Re: CVE request: clamav 0.94.2 Steven M. Christey (Dec 03)
Re: CVE request: jhead Steven M. Christey (Oct 15)
Re: CVE id request: vlc Steven M. Christey (Nov 10)
Re: CVE-2008-4796: snoopy triage Steven M. Christey (Nov 03)
Re: CVE request: CUPS DoS via RSS subscriptions Steven M. Christey (Nov 20)
Re: CVE id request: chm2pdf insecure temporary files usage Steven M. Christey (Dec 01)
Re: CVE request: moodle (XSS) Steven M. Christey (Dec 16)
Re: amarok temp file vuln Steven M. Christey (Oct 07)
Re: regarding CVE-2008-4382 & CVE-2008-4381 Steven M. Christey (Oct 03)
Re: CVE request: XSS in mediawiki 1.13.1 and 1.12.0 Steven M. Christey (Oct 03)
Re: CVE request: kernel: x86: Fix broken LDT access in VMI Steven M. Christey (Oct 03)
Re: CVE request: Nagios (two issues) Steven M. Christey (Nov 10)
Re: CVE Request - ecryptfs-utils Steven M. Christey (Nov 20)
Re: Re: CVE Request - roundcubemail Steven M. Christey (Dec 16)
Re: CVE request: kernel: sctp: Fix kernel panic while process protocol violation parameter Steven M. Christey (Oct 22)
Re: CVE request: wordpress can be subject of delayed attacks via cookies Steven M. Christey (Nov 20)
Re: CVE Request (nagios) Steven M. Christey (Dec 16)
Re: CVE request: phpMyAdmin < 3.1.1.0 (SQL injection through XSRF on several pages ) Steven M. Christey (Dec 16)
Re: regarding CVE-2008-4382 & CVE-2008-4381 Steven M. Christey (Oct 03)
Re: CVE request: lynx (old) .mailcap handling flaw Steven M. Christey (Oct 27)
Re: CVE request: kernel: Unix sockets kernel panic Steven M. Christey (Dec 03)
Re: CVE request: kernel: applicom: fix an unchecked user ioctl range Steven M. Christey (Dec 16)
Re: CVE request: kernel: don't allow splice() to files opened with O_APPEND Steven M. Christey (Oct 14)

Tavis Ormandy

Re: CVE request: lynx (old) .mailcap handling flaw Tavis Ormandy (Oct 29)
Re: CVE request: lynx (old) .mailcap handling flaw Tavis Ormandy (Oct 27)

Thijs Kinkhorst

Re: CVE request phpmyadmin (Fwd: XSS in phpMyadmin) Thijs Kinkhorst (Oct 28)

Thomas Biege

Re: CVE request: libcdaudio Thomas Biege (Nov 11)
CVE request: clamav get_unicode_name() off-by-one buffer overflow Thomas Biege (Nov 13)
CVE request: strongswam denial-of-service Thomas Biege (Oct 14)
CVE request: libcdaudio Thomas Biege (Nov 04)
Re: CVE request: libcdaudio Thomas Biege (Nov 11)
CVE request: graphviz buffer overflow while parsinf DOT file Thomas Biege (Oct 15)

Thomas Bl??sing

Re: CVE id request: proftpd Thomas Bl??sing (Oct 03)

Thomas Viehmann

xine-lib and ocert-2008-008 Thomas Viehmann (Nov 22)

Tomas Hoger

Re: CVE-2008-4619 / milw0rm6775 Tomas Hoger (Oct 29)
Re: CVE Request Tomas Hoger (Oct 13)
Re: CVE request: clamav get_unicode_name() off-by-one buffer overflow Tomas Hoger (Nov 13)
Re: Re: libxml2 "ampproblem" DoS Tomas Hoger (Oct 06)
Re: CVE request: cups - potential integer overflow in PNG image reader [was: CUPS DoS via RSS subscriptions] Tomas Hoger (Dec 03)
CVE request - uw-imap Tomas Hoger (Nov 03)
Re: GeSHi: Clarification about the recent security (non-)issues (SA32559) Tomas Hoger (Nov 11)
Re: CVE request: libcdaudio Tomas Hoger (Nov 07)
Re: CVE-2008-4619 / milw0rm6775 Tomas Hoger (Nov 02)
Re: CVE request - libgadu Tomas Hoger (Oct 29)
CVE-2008-4619 / milw0rm6775 Tomas Hoger (Oct 28)
Re: CVE request: lynx (old) .mailcap handling flaw Tomas Hoger (Oct 29)
CVE request - pdfjam Tomas Hoger (Dec 19)
Re: CVE request: graphviz buffer overflow while parsinf DOT file Tomas Hoger (Oct 15)
Re: CVE Request Tomas Hoger (Oct 16)
Re: CVE request: lynx (old) .mailcap handling flaw Tomas Hoger (Oct 28)
Re: CVE request for ecryptfs Tomas Hoger (Oct 29)
Re: CVE request: cups - potential integer overflow in PNG image reader [was: CUPS DoS via RSS subscriptions] Tomas Hoger (Nov 25)
CVE request: lcms (old issues) Tomas Hoger (Nov 28)
CVE request: lynx (old) .mailcap handling flaw Tomas Hoger (Oct 25)
CVE request - libgadu Tomas Hoger (Oct 28)
Re: CVE request: libcdaudio Tomas Hoger (Nov 11)
Re: CVE request: mantisbt < 1.1.4: RCE Tomas Hoger (Oct 20)
Re: CVE request: phpMyAdmin < 3.1.1.0 (SQL injection through XSRF on several pages ) Tomas Hoger (Dec 17)
CVE request: vinagre Tomas Hoger (Dec 08)
Avahi daemon DoS (CVE-2008-5081) Tomas Hoger (Dec 14)

Vincent Danen

Fwd: [Full-disclosure] [PLSA 2008-36] Ffmpeg: Multiple vulnerabilities Vincent Danen (Oct 29)

Will Drewry

Re: CVE request - Python string expandtabs Will Drewry (Nov 10)