Bugtraq mailing list archives
4th quarter (Oct-Dec) 1997, sorted by thread
Starting: Wed 01 Oct 1997 - 14:28:05 CST
Ending: Wed 31 Dec 1997 - 21:39:01 CST
Messages: 580
- rlogin authentication bug Aleph One
- Security Bulletin for telnet services in HP-UX rel. 10.30 Aleph One
- rlogin authentication bug Aleph One
- Notice: serious security problem in Cisco PPP/CHAP John Bashinski
- IE4 and channels Alan Cox
- Possible weakness in LPD protocol Bennett Samowich
- underestimating crackers Tim Newsham
- NT Domain Authentication Protocol - draft Aleph One
- TCPwrappers race condition Thamer Al-Herbish
- Re: msql access control thoth@PURPLEFROG.COM
- NP-complete solution given is exponential Aleph One
- Sec. Bulletin for mediainit(1) in HP-UX 9.X and 10.X Aleph One
- Re: NP-completeness algorithm: errata Aleph One
- Ulrich Flegel's SSH/X11 "vulnerability" Tatu Ylonen
- SNI-19:BSD lpd vulnerability Oliver Friedrichs
- Majordomo 1.94.4 released -- SECURITY FIXES Aleph One
- web.sql vulnerability Aleph One
- Re: Possible weakness in LPD protocol Oliver Friedrichs
- xc Aleph One
- Re: Possible weakness in LPD protocol Warner Losh
- DUnix 4.x: way to fix tcp/ip sequence predictability (fwd) Jeremy Fischer
- HP Laserjet 4M Plus DirectJet Problem Klaus Steding-Jessen
- Solaris 2.6 and sockets Wojciech Tryc
- HP-UX tcp_random_seq Aleph One
- Flaw in DNS Phillip R. Jaenke
- KSR[T] Advisory #3: updatedb / crontabs KSR[T]
- X Security: a summary Lionel Cons
- L0pht Advisory: IMAP4rev1 imapd server We got Food - Fuel - Ice-cold Beer - and X.509 certificates
- Another way to exploit local classes in Java Andre L. Dos Santos
- Malicious Linux modules Runar Jensen
- SNMP Insecurity Aleph One
- Security flaw in PGPverify of INN Lutz Donnerhacke
- Security flaw in Count.cgi (wwwcount) Razvan Dragomirescu
- Huge security holes in Microsoft FP98 server extensions for Apache Marc Slemko
- DOS PC FTP SERVER Efrain Torres Mejia
- _very_ poor ISN generation on Ascend MAX (fwd) Marc Slemko
- Security flaws in Yahoo Mail andrew shieh
- `smurf' multi-broadcast icmp attack T. Freak
- broadcast ip scanning script hyped
- smurf.c ported to freebsd and friends Jimbo Bahooli
- CERT Vendor-Initiated Bulletin VB-97.11 - NEC Corp. Aleph One
- Alert Seattle Lab Sendmail v2.5 for NT vulnerable David LeBlanc
- Update - Seattle Lab Slmail v2.5 for NT vulnerable David LeBlanc
- wwwcount remote exploit Nicolas Dubee
- Run, RunOnce and Uninstall Registry Keys Vulnerability Aleph One
- Security Hole in Explorer 4.0 Aleph One
- computer immunology VaX#n8
- Jabadoo Security Hack Aleph One
- Fix Now Available for "Freiburg" Text-Viewing Issue Aleph One
- WinNT syscalls insecurity Solar Designer
- Vulnerability in PHP Example Logging Scripts bryan berg
- Followup to PHP bug bryan berg
- Remotely kill Solaris syslogd lb - STAFF
- Re: remotely kill solaris syslogd Chris Wilson
- Responses to syslogd killing lb
- SNI-19: BSD lpd vulnerabilities (UPDATE) Secure Networks Inc.
- SNI-20: Telnetd tgetent vulnerability Secure Networks Inc.
- Majordomo and EXPN James Ponder
- Buffer overflow in the IBM AIX "xdat" command Aleph One
- Re: Majordomo and EXPN Christopher M. Conway
- ISS Security Alert X-Force
- BSDI termcap exploit Joseph_K
- Cute SPARC CPU bug Charles M. Hannum
- Possible SERIOUS bug in open()? Aleph One
- BSDI xterm_color/kterm exploit Ladislav Bukvicka
- IRIX /var/inst/patchbase Paul Tatarsky
- Vulnerability in metamail Alan Cox
- Re: Redir games with ARP and ICMP John McDonald
- More info on SPARC CPU bug Charles M. Hannum
- Re: SECURITY: groff, rhs-printfilters, tetex, metamail fixes Savochkin Andrey Vladimirovich
- KSR[T] Advisory #004: printfilter / groff / lpd KSR[T]
- SECURITY: metamail update (fwd) Raymond Dijkxhoorn
- CERT Vendor-Initiated Bulletin VB-97.12 - opengroup Aleph One
- LPRng security Aleph One
- Sun Security Bulletin #00157 Aleph One
- Sun Security Bulletin #00155 (fwd) Howie
- Sun Security Bulletin #00156 (fwd) Howie
- Sun Security Bulletin #00158 Aleph One
- IBM-ERS Security Vulnerability Alert: Buffer overflows in the ers@VNET.IBM.COM
- Security Vulnerability in CDE on HP-UX 10.0[1,2,3] Aleph One
- IBM-ERS Security Vulnerability Alert: The AIX ftp client ers@VNET.IBM.COM
- IBM-ERS Security Vulnerability Alert: Buffer overflow and ers@VNET.IBM.COM
- IBM-ERS Security Vulnerability Alert: The AIX piodmgrsu command ers@VNET.IBM.COM
- FreeBSD Security Advisory: FreeBSD-SA-97:05.open Aleph One
- IBM-ERS Security Vulnerability Alert: The AIX "nslookup" command ers@VNET.IBM.COM
- Re: FW: Apache Fix Jonathan H. Pickard
- Re: [seg-l] Passwords en Cisco (fwd) Gustavo A. Lozano
- cisco passwords Jared Mauch
- MIT Kerberos V5 R1.0.2 is released Aleph One
- Major security-hole in kerberos rsh, rcp and rlogin. Artur Grabowski
- Re: [seg-l] Passwords en Cisco (fwd) We got Food - Fuel - Ice-cold Beer - and X.509 certificates
- FreeBSD Security Advisory: FreeBSD-SA-97:05.open Tony Hagale
- CERT Advisory CA-97.24 - Count_cgi Aleph One
- Security Vulnerability in xlock on VVOS, HP-UX 10.24 Aleph One
- HPSBUX9710-072 Sec. Vulnerability in CDE on HP-UX 10.[10, 20, Aleph One
- netapp NFS server crash by FreeBSD client [w/patch] Dmitry Kohmanyuk =?KOI8-R?B?5M3J1NLJyiDrz8jNwc7Ayw==?=
- simptcp hotfix renewed on 03/11/1997 Yves Kreis
- possible freebsd su problem? taz
- WARNING: Linux Intel Pentium Bug ZombieMan
- Re: Major security-hole in kerberos rsh, rcp and rlogin. Jeff Polk
- Outdated DNS and syslog Aaron Schultz
- Re: Intel Pentium Bug Daniele Orlandi
- Re: Intel Pentium Bug JoelKatz
- Major security flaw in Cybercash 2.1.2 Anonymous
- Re: Intel Pentium Bug John Pettitt
- Re: Intel Pentium Bug Joe Ilacqua
- Security bug in iCat Suite version 3.0 Mikael Johansson
- Re: Intel Pentium Bug Rubens Kuhl Jr.
- xbru vulnerability Kyle Amon
- Re: Intel Pentium Bug Barry Irwin
- Re: Intel Pentium Bug Peter Bierman
- Re: Intel Pentium Bug Bjorn Wesen
- Re: Intel Pentium Bug Aleph One
- solaris (fwd) Rob Hagopian
- L0pht Advisory: IE4.0 DilDog
- Microsoft Office security bug Aleph One
- Possible solution: [Fwd: I figured out how to make my Pentium Miguel Angel Rodriguez Jodar
- CERT Advisory CA-97.25 - CGI_metachar Aleph One
- Cisco IOS password encryption facts John Bashinski
- Missing creditation on Cyrix coma bug Alan Cox
- Safe /tmp cleanup dsiebert@ICAEN.UIOWA.EDU
- Intel Pentium Bug: Workaround (1st lvl cache) Ralf Rudolph
- Intel Pentium Bug: BSDI Releases a patch Joe Ilacqua
- What were the opcodes to hang a Pentium again? (fwd) Darren Reed
- Updating microcode on the fly Superuser
- Vunerability in Lizards game SUID
- Re: BoS: WARNING: Serious Pentium Bug Robert C. Casas Ph.D.
- solaris 251 & syslogd Michael Helm
- Bug In Security Dynamics' FTP server (Version 2.2) sp00n
- Digital Unix Security Problem Tom Leffingwell
- CERT Advisory CA-97.25 - REVISED- Code Correction Aleph One
- correction to: Bug In Security Dynamics' FTP server (Version 2.2) sp00n
- mode of the i586 F0 bug VaX#n8
- Illegal Instruction Erratum (Intel's position) (fwd) Jay M. Richmond
- Linux F00F Patch Aleph One
- IE4.0 patch Richard Trott
- another buffer overrun in sperl5.003 Pavel Kankovsky
- What to do when you forget your cisco LD password... Dustin Sallings
- X Security problem (?) Carlo Wood
- Linux IP fragment overlap bug G P R
- Re: Pentium bug workaround in NetBSD (was Re: Intel Pentium Bug: Charles M. Hannum
- Re: Pentium bug workaround in NetBSD (was Re: Intel Pentium Bug: Charles M. Hannum
- digital unix 4.0 hole John McDonald
- The Linux patch. G P R
- The overlapping fragment bug Alan Cox
- Pentium processor invalid instruction erratum Aleph One
- Software backgrounder Aleph One
- BSDI patch for Pentium workaround has problems Charles M. Hannum
- Re: Pentium bug workaround in NetBSD (was Re: Intel Pentium Bug: Charles M. Hannum
- Re: solaris 251 & syslogd Dave Kinchlea
- CERT Vendor-Initiated Bulletin VB-97.13 - GlimpseHTTP.WebGlimpse Aleph One
- Solaris x86 & ICEBP Solar Designer
- pentium f00f crash and IP fragment bug crash fixes... Aleph One
- CORRECTED Preliminary Notice: Cisco LocalDirector enable password John Bashinski
- Re: Pentium bug workaround in NetBSD (was Re: Intel Pentium Edwin Li-Kai Liu
- Preliminary Notice: Cisco LocalDirector enable password loss John Bashinski
- (more) DU V4.0 security hole (fwd) John McDonald
- DU V4.0 security hole (fwd) John McDonald
- pppd security hole Re: i386/344 (fwd) David Neil
- Windows 95 IP Fragmentation Bug Fix? Aleph One
- IP DOS attacks -- Win95 and WinNT Paul Leach
- Silicon Graphics Security Advisory 19971103-01-PX - IRIX syserr SGI Security Coordinator
- Silicon Graphics Security Advisory 19971102-01-PX - Vulnerability SGI Security Coordinator
- Silicon Graphics Security Advisory - 19970507-02-PX - IRIX eject SGI Security Coordinator
- Silicon Graphics Security Advisory 19971101-01-PX - libXt SGI Security Coordinator
- SGI Security Advisory 19970505-02-PX - IRIX df Buffer Overrun SGI Security Coordinator
- Major Security Flaw in Cybercash 2.1.2 Kerri Kraft
- Re: IP DOS attacks -- Win95/WS2 update Paul Leach
- new TCP/IP bug in win95 m3lt
- "LAND" Attack Update Aleph One
- ipfw workaround for syn-loop attack, FreeBSD 2.2.5-STABLE Robert Watson
- Land and Cisco Routers. Eric Thacker
- land protection for cisco Stefan Stefanov
- 44BSD port of land.c blast
- Network Attack Trend Analysis Craig H. Rowland
- IP DOS attacks -- Win95 patches available Paul Leach
- Internet Explorer 3.02 & 4.0 Page Redirect Vulnerabily Aleph One
- Field Notice: TCP loopback DoS Attack (land.c) and Cisco Devices John Bashinski
- XFree86 insecurity shegget
- Intel Pentium Bug on System V AnthonyX Eufemio
- Updated notice on Cisco and land.c John Bashinski
- Re: "LAND" Attack Update Charles M. Hannum
- CyberCash response to: Major security flaw in Cybercash 2.1.2 Pat Farrell
- Re: "LAND" Attack Update Don Lewis
- HPSBUX9704-057 Security Vulnerability in ppl command Aleph One
- Re: "LAND" Attack Update Charles M. Hannum
- Re: "LAND" Attack Update Don Lewis
- Solaris 2.5.1 x86 statd exploit Aleph One
- Re: XFree86 insecurity (abc123) Czako Krisztian
- r00t advisory [ Madden 97, Madden 64 ] [ Nov 25 1997 ] (fwd) X
- Cisco LocalDirector password loss: alert cancelled John Bashinski
- CERT Vendor-Initiated Bulletin VB-97.14 - scoterm Aleph One
- Solaris 2.5.1 automountd exploit (fwd) Aleph One
- Potenial DOS in Windows NT RAS PPTP Kevin Wormington
- Re: HTTPD Vladislav S. Davidzon
- Dos against NT4-SP3 and 95 [latierra.c] Kelly E. Gibbs
- in.telnetd bug (linux) kgb
- Xyplex terminal server bug Aleksandr Pilosov
- Another update on land.c and Cisco security-alert@cisco.com
- XDM Insecurity Eric Augustus
- Linux inetd.. moOd
- xscreensaver buffer overflow Aleph One
- Sendmail quirks Duck Vader
- More telnet Daemon Fun Aaron Campbell
- an detailed explaination why land attack works? Feiyi Wang
- more xyplex commentary Matthew G. Harrigan
- Fw: Insufficient allocations in net/unix/garbage.c (fwd) Phillip R. Jaenke
- Sun Security Bulletin #00159 (fwd) Howie
- Sun Security Bulletin #00160 (fwd) Howie
- Possible Solaris 2.6 hole at(1M) sp00n
- Q177539: Windows 95 Stops Responding Because of Land Attack Aleph One
- Q165005: Windows NT Slows Down Due to Land Attack Aleph One
- Re: an detailed explaination why land attack works? Don Lewis
- scoterm exploit Aleph One
- Re: Insufficient allocations in net/unix/garbage.c Aleph One
- pinelock.csh exploit Roger Harrison ?
- HPUX rexecd bug on trusted system Kevin K. Sochacki
- CERT Advisory CA-97.26 - statd Aleph One
- Buggy /usr/bin shell scripts obi@VIC20.DZP.SE
- Communicator 4.04 little bug Kenobi
- Microsoft, CNET, BUGTRAQ and the 'land' attack Geoffrey King
- cgiwrap-3.5 (and 3.6beta1, Duncan Simpson
- KSR[T] #005: Dillon crontab / crond KSR[T]
- FreeBSD Security Advisory: FreeBSD-SA-97:06.f00f Aleph One
- SNI-21: Firewall-1 Security Advisory Secure Networks Inc.
- MIT Kerberos V5 R1.0.4 is released Aleph One
- Yahoo's httpd hacked. Evil Pete
- Re: Yahoo hacked Aleph One
- CERT Advisory CA-97.27 - FTP_bounce Aleph One
- visible passwd bug in kdm ? Sascha Runschke
- Re: Yahoo hacked Aleph One
- Re: Yahoo hacked Thomas Stromberg
- cisco 76x buffer overflow Laslo Orto
- Q163852: Invalid Operand with Locked CMPXCHG8B Instruction Aleph One
- To kill a sun: Jason Zapman II
- uffer Overrun in RedHat 5.0 Wilton Wong - ListMail
- Buffer Overruns in RedHat 5.0 Wilton Wong - ListMail
- buffer overflows in cracklib?! Jon Lewis
- SunOS4.1.4 another tmpfs bug YAMAMORI Takenori
- Sun killer - NT port Aleph One
- Vulnerabilities in ICQ Alan Cox
- Re: To kill a sun: Robert Sink
- Re: Buffer Overruns in RedHat 5.0 Wilton Wong - ListMail
- Re: Buffer overrun in Redhat 5.0 Wilton Wong - ListMail
- Word Perfect for Linux v7.0.0116 Hans Petter Bieker
- debian pppd chatscript Stephen Hardman
- Security field notice: Cisco 7xx password buffer overflow security-alert@cisco.com
- [vadim@tversu.ru: Re: Linux inetd..] Vadim Kolontsov
- CERT Advisory CA-97.28 - Teardrop_Land Aleph One
- Q147222: Group of Hotfixes for Exchange 5.5 and IIS 4.0 Aleph One
- SGI Security Advisory 19971201-01-P1391 - statd(1M) Buffer Overrun SGI Security Coordinator
- CERT Vendor-Initiated Bulletin VB-97.16 - CrackLib Aleph One
- SNI-22: RADIUS Advisory Secure Networks Inc.
- CGI security hole in EWS (Excite for Web Servers) Marc Merlin
- mIRC Worm Aleph One
- Re: CGI security hole in EWS (Excite for Web Servers) Marc Merlin
- Sun Security Bulletin #00161 Aleph One
- StackGuard: Automatic Protection From Stack-smashing Attacks Crispin Cowan
- Administratrivia Aleph One
- Buffer Overrun / DOS in /bin/passwd (at least Redhat Linux 4.2) Alex Mottram
- Viewable .jhtml source with JavaWebServer Brian Krahmer
- Xotpcalc, version 1.0 Ivan Nejgebauer
- f00f.patch (fwd) Ejovi
- Re: StackGuard: Automatic Protection From tqbf@JOSHUA.ENTERACT.COM
- Linux vsyslog() overflow Solar Designer
- userv - how to make cron (et al) not setuid Aleph One
- Crashing an XTACACS authentication server Coaxial Karma
- Faking logout with XTACACS Coaxial Karma
- man problem Thomas Fischbacher
- Re: man problem d
- Gzip & segmentation faults =?UNKNOWN-8BIT?Q?Micha=B3?= Zalewski
- Quake II Remote Denial of Service profound darkness
- More Quake II Quirks profound darkness
- Re: Quake II Remote Denial of Service Kool Hercz
- More details about gzip... =?UNKNOWN-8BIT?Q?Micha=B3?= Zalewski
- q1/q2 remote crash attacks Ambrose Feinstein
- A security-related bug in RPM Savochkin Andrey Vladimirovich
- Re: Gzip & segmentation faults wosch@FREEBSD.ORG
- quake2 patch tl
- Oddities in RH 5.0 Tres Melton
- AIX 4.x Mount S. Ryan Quick
- iPass RoamServer 3.1 Chris A. Epler
- Apache DoS attack? =?UNKNOWN-8BIT?Q?Micha=B3?= Zalewski
- Re: Problems with "rpm --setperms" Erik Troan
- vhost Solar Designer
- Vulnerability in ccdconfig Niall Smart
- Apache memory/process management. =?iso-8859-2?Q?Micha=B3_Zalewski?=
Last message date: Wed 31 Dec 1997 - 21:39:01 CST
Archived on: Fri Jan 09 1998 - 13:38:24 CST
This archive was generated by hypermail 1.02.