[Full-disclosure] unsubscribe full-disclosure

2007-12-03 Thread Makousky, Steve C
unsubscribe full-disclosure
 
--
Steve Makousky CISSP, CNE, MCP
Fairview Health Services
Lead Information Security Analyst
[EMAIL PROTECTED]
W # - 612.672.6788
P # -
00110110 00110001 00110010 00101110 00110110 00110001
00110011 00101110 00110110 00111001 00110011 00111001
--

 



From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Joel R.
Helgeson
Sent: Sunday, December 02, 2007 9:19 PM
To: 'happy nino'; [EMAIL PROTECTED];
full-disclosure@lists.grok.org.uk
Subject: Re: [Full-disclosure] need help in managing administrators



Launch "Active Directory Users & Computers"

Listed you have the AD containers used to hold all your objects, select
a tree, right-click the container, click properties. There is a tab
called "Delegate Control" where you can delegate management of the
objects located in that container to whatever groups or individuals you
want.  It is best to create a user group, then delegate the control to
the group rather than the user.


This is where it is important that you have your AD containers set up
properly...

 

Hope that helps provide some direction...

 

Joel Helgeson

 

 

From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of happy
nino
Sent: Sunday, December 02, 2007 3:42 AM
To: [EMAIL PROTECTED]; full-disclosure@lists.grok.org.uk
Subject: [Full-disclosure] need help in managing administrators

 

 

Hi All,
i've a problem in my organization that we have several domain
admins, we are in the process of removing most of them but i need to
have a person only authorized to install
new software to users' computers but without having access to
other parts of the users machines, is this possible ?..can i delegate a
function like this only to certain users with out
being domain admins?
Appreciate your great help
thanks alot 

regards,
Nad


 

 



Get closer to the jungle. I'm a Celebrity Get Me Out Of Here!
 

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread full-disclosure
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

SHUT UP VLADIS

On Tue, 09 Oct 2007 12:14:08 -0400 [EMAIL PROTECTED] wrote:
>On Tue, 09 Oct 2007 10:26:17 +0530, sushil Agarwal said:
>> UNSUBSCRIBE
>
>Read RFC2369, then ponder the headers of any message from the
>list,
>and wait for enlightenment.
-BEGIN PGP SIGNATURE-
Note: This signature can be verified at https://www.hushtools.com/verify
Charset: UTF8
Version: Hush 2.5

wpwEAQECAAYFAkcLwfsACgkQ+dWaEhErNvQnvAP/ZFgpIsnwdNP3nkK1gWT8VwmXjOuK
3nhqpJUjKTwP4/2OmKWtMjIdYjPFOGRzwo3dPhKQ3MmXDAm40GQ63w4lwkQdch5oSWfA
CzJ/Fbv4gVRS2vfoF14cfgCgY4rGqFg+eEaDO6MAZnds8Da0tYO4HADcZWIiW07Y9CjT
1syYzGk=
=/7Yz
-END PGP SIGNATURE-


___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread Valdis . Kletnieks
On Tue, 09 Oct 2007 10:26:17 +0530, sushil Agarwal said:
> UNSUBSCRIBE

Read RFC2369, then ponder the headers of any message from the list,
and wait for enlightenment.


pgpwF6qcw9ZgR.pgp
Description: PGP signature
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread Juha-Matti Laurio
We have been waiting this link very-easy-to-find to the list since Monday. The 
office day is over in many countries outside of USA already and people post OT 
stuff to the list...
Like Fabrizio said, just go and unsubscribe.

- Juha-Matti

Fabrizio <[EMAIL PROTECTED]> wrote: 
> "well-defined procedure"
> 
> go here: https://lists.grok.org.uk/mailman/listinfo/full-disclosure
> 
> and unsubscribe. no need to flood the list with pointless BS.
> 
> f
> 
> On 10/9/07, Ferdinand Klinzer <[EMAIL PROTECTED]> wrote:
> >
> > -BEGIN PGP SIGNED MESSAGE-
> > Hash: SHA1
> >
> > Yes and back to old school with fire since!
> >
> > ferdinand
> >
> > Am 09.10.2007 um 09:31 schrieb Paul Ooi Cong Jen:
> >
> > > I think the best would be stop using email ;)
> > >
> > >
> > > pocj
> > > takizo.com/blog
> > >
> > > On Oct 9, 2007, at 3:23 PM, S/U/N wrote:
> > >
> > >> [EMAIL PROTECTED] a écrit :
> > >>> You want to 'unsubscribe'.  You now have two choices:
> > >> No, actually radical one: throw your computer through da window
> > >>
> > >>
> > >> ___
> > >> Full-Disclosure - We believe in it.
> > >> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > >> Hosted and sponsored by Secunia - http://secunia.com/
> > >
> > > ___
> > > Full-Disclosure - We believe in it.
> > > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > > Hosted and sponsored by Secunia - http://secunia.com/
> >
> > -BEGIN PGP SIGNATURE-
> > Version: GnuPG v1.4.3 (Darwin)
> >
> > iD8DBQFHC0FQivpgT1glX4cRAjFgAJ9TYMhyZdhdaYtuaLGKDrMOO6jfxQCgifRO
> > WcK1E9wqIFupKMfYXSbN7lc=
> > =ju56
> > -END PGP SIGNATURE-
> >

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread Fabrizio
"well-defined procedure"

go here: https://lists.grok.org.uk/mailman/listinfo/full-disclosure

and unsubscribe. no need to flood the list with pointless BS.

f

On 10/9/07, Ferdinand Klinzer <[EMAIL PROTECTED]> wrote:
>
> -BEGIN PGP SIGNED MESSAGE-
> Hash: SHA1
>
> Yes and back to old school with fire since!
>
> ferdinand
>
> Am 09.10.2007 um 09:31 schrieb Paul Ooi Cong Jen:
>
> > I think the best would be stop using email ;)
> >
> >
> > pocj
> > takizo.com/blog
> >
> > On Oct 9, 2007, at 3:23 PM, S/U/N wrote:
> >
> >> [EMAIL PROTECTED] a écrit :
> >>> You want to 'unsubscribe'.  You now have two choices:
> >> No, actually radical one: throw your computer through da window
> >>
> >>
> >> ___
> >> Full-Disclosure - We believe in it.
> >> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> >> Hosted and sponsored by Secunia - http://secunia.com/
> >
> > ___
> > Full-Disclosure - We believe in it.
> > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > Hosted and sponsored by Secunia - http://secunia.com/
>
> -BEGIN PGP SIGNATURE-
> Version: GnuPG v1.4.3 (Darwin)
>
> iD8DBQFHC0FQivpgT1glX4cRAjFgAJ9TYMhyZdhdaYtuaLGKDrMOO6jfxQCgifRO
> WcK1E9wqIFupKMfYXSbN7lc=
> =ju56
> -END PGP SIGNATURE-
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread Ferdinand Klinzer
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Yes and back to old school with fire since!

ferdinand

Am 09.10.2007 um 09:31 schrieb Paul Ooi Cong Jen:

> I think the best would be stop using email ;)
>
>
> pocj
> takizo.com/blog
>
> On Oct 9, 2007, at 3:23 PM, S/U/N wrote:
>
>> [EMAIL PROTECTED] a écrit :
>>> You want to 'unsubscribe'.  You now have two choices:
>> No, actually radical one: throw your computer through da window
>>
>>
>> ___
>> Full-Disclosure - We believe in it.
>> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
>> Hosted and sponsored by Secunia - http://secunia.com/
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/

-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.3 (Darwin)

iD8DBQFHC0FQivpgT1glX4cRAjFgAJ9TYMhyZdhdaYtuaLGKDrMOO6jfxQCgifRO
WcK1E9wqIFupKMfYXSbN7lc=
=ju56
-END PGP SIGNATURE-

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread Paul Ooi Cong Jen
I think the best would be stop using email ;)


pocj
takizo.com/blog

On Oct 9, 2007, at 3:23 PM, S/U/N wrote:

> [EMAIL PROTECTED] a écrit :
>> You want to 'unsubscribe'.  You now have two choices:
> No, actually radical one: throw your computer through da window
>
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread gjgowey
For cases like that I usually recommend that the person sells all their worldly 
posessions and takes up life as a Tibetan monk.

Geoff

Sent from my BlackBerry wireless handheld.

-Original Message-
From: S/U/N <[EMAIL PROTECTED]>

Date: Tue, 09 Oct 2007 09:23:41 
To:full-disclosure@lists.grok.org.uk
Subject: Re: [Full-disclosure] UNSUBSCRIBE


[EMAIL PROTECTED] a écrit :
> You want to 'unsubscribe'.  You now have two choices:
No, actually radical one: throw your computer through da window


___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread S/U/N
[EMAIL PROTECTED] a écrit :
> You want to 'unsubscribe'.  You now have two choices:
No, actually radical one: throw your computer through da window


___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-09 Thread gjgowey
I think he's thinking that we're following google's example and using pigeons 
not monkeys.

Geoff

Sent from my BlackBerry wireless handheld.

-Original Message-
From: "Harry Muchow" <[EMAIL PROTECTED]>

Date: Tue, 9 Oct 2007 11:38:36 
To:"sushil Agarwal" <[EMAIL PROTECTED]>
Cc:full-disclosure@lists.grok.org.uk
Subject: Re: [Full-disclosure] UNSUBSCRIBE


Do you know how to use a list? Do you think there are a bunch of
monkeys sitting at the other end of the list who are constantly
monitoring who sends what and would unsubscribe someone as soon as
they see a post with UNSUBSCRIBE message?

No! You need to unsubscribe using a well defined procedure. Do you
know how to use Google or are you a clown who escaped from the village
circus?

On 10/9/07, sushil Agarwal <[EMAIL PROTECTED]> wrote:
> UNSUBSCRIBE
> please dont send me any mail now onwards

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-08 Thread Harry Muchow
Do you know how to use a list? Do you think there are a bunch of
monkeys sitting at the other end of the list who are constantly
monitoring who sends what and would unsubscribe someone as soon as
they see a post with UNSUBSCRIBE message?

No! You need to unsubscribe using a well defined procedure. Do you
know how to use Google or are you a clown who escaped from the village
circus?

On 10/9/07, sushil Agarwal <[EMAIL PROTECTED]> wrote:
> UNSUBSCRIBE
> please dont send me any mail now onwards

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-08 Thread gjgowey
Somehow this reminds me of a text-adventure game.  

Command?
>unsubscribe

You want to 'unsubscribe'.  You now have two choices:
1) learn how to use the filter options for your mail client.
2) learn how to use google to return to the web page that you used to subscribe 
for further instructions. 

Choice?
>

Sent from my BlackBerry wireless handheld.

-Original Message-
From: "sushil Agarwal" <[EMAIL PROTECTED]>

Date: Tue, 9 Oct 2007 10:26:17 
To:"James Matthews" <[EMAIL PROTECTED]>
Cc:full-disclosure@lists.grok.org.uk
Subject: Re: [Full-disclosure] UNSUBSCRIBE


UNSUBSCRIBE
please dont send me any mail now onwards

On 10/9/07, James Matthews <[EMAIL PROTECTED]> wrote:
> lamo! Great email
>
> On 10/8/07, Jay Sulzberger <[EMAIL PROTECTED]> wrote:
> >
> >
> >
> > On Mon, 8 Oct 2007, Jones, Jeff (Enterprise Security) <
> > [EMAIL PROTECTED]> wrote:
> >
> > > UNSUBSCRIBE
> > >
> > > Jeffrey A. Jones
> >
> > http://crackmonkey.org/faq.html#QUESTION3
> >
> > oo--JS.
> >
> >
> > > Constellation Energy Group,
> > > Engineering & Forensics- Information Security Management
> > > (443) 394-2959
> > > mailto: [EMAIL PROTECTED]
> >
> > ___
> > Full-Disclosure - We believe in it.
> > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > Hosted and sponsored by Secunia - http://secunia.com/
> >
>
>
>
> --
> http://search.goldwatches.com/search.aspx?Search=Cufflinks
> http://www.jewelerslounge.com
>

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-08 Thread sushil Agarwal
UNSUBSCRIBE
please dont send me any mail now onwards

On 10/9/07, James Matthews <[EMAIL PROTECTED]> wrote:
> lamo! Great email
>
> On 10/8/07, Jay Sulzberger <[EMAIL PROTECTED]> wrote:
> >
> >
> >
> > On Mon, 8 Oct 2007, Jones, Jeff (Enterprise Security) <
> > [EMAIL PROTECTED]> wrote:
> >
> > > UNSUBSCRIBE
> > >
> > > Jeffrey A. Jones
> >
> > http://crackmonkey.org/faq.html#QUESTION3
> >
> > oo--JS.
> >
> >
> > > Constellation Energy Group,
> > > Engineering & Forensics- Information Security Management
> > > (443) 394-2959
> > > mailto: [EMAIL PROTECTED]
> >
> > ___
> > Full-Disclosure - We believe in it.
> > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > Hosted and sponsored by Secunia - http://secunia.com/
> >
>
>
>
> --
> http://search.goldwatches.com/search.aspx?Search=Cufflinks
> http://www.jewelerslounge.com
>

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-08 Thread James Matthews
lamo! Great email

On 10/8/07, Jay Sulzberger <[EMAIL PROTECTED]> wrote:
>
>
>
> On Mon, 8 Oct 2007, Jones, Jeff (Enterprise Security) <
> [EMAIL PROTECTED]> wrote:
>
> > UNSUBSCRIBE
> >
> > Jeffrey A. Jones
>
> http://crackmonkey.org/faq.html#QUESTION3
>
> oo--JS.
>
>
> > Constellation Energy Group,
> > Engineering & Forensics- Information Security Management
> > (443) 394-2959
> > mailto: [EMAIL PROTECTED]
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>



-- 
http://search.goldwatches.com/search.aspx?Search=Cufflinks
http://www.jewelerslounge.com
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] UNSUBSCRIBE

2007-10-08 Thread Jay Sulzberger


On Mon, 8 Oct 2007, Jones, Jeff (Enterprise Security) <[EMAIL PROTECTED]> wrote:

> UNSUBSCRIBE
>
> Jeffrey A. Jones

http://crackmonkey.org/faq.html#QUESTION3

oo--JS.


> Constellation Energy Group,
> Engineering & Forensics- Information Security Management
> (443) 394-2959
> mailto: [EMAIL PROTECTED]

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] UNSUBSCRIBE

2007-10-08 Thread M. Shirk
Of course you want to unsubscribe. Didn't your website go down for like an 
entire day? 

BTW. Good work on the phone number. One of our Full-Disclosure Operators will 
be with you shortly.

Shirkdog 


' or 1=1-- 


http://www.shirkdog.us

Date: Mon, 8 Oct 2007 14:46:06 -0400
From: [EMAIL PROTECTED]
To: full-disclosure@lists.grok.org.uk; [EMAIL PROTECTED]
Subject: [Full-disclosure] UNSUBSCRIBE





UNSUBSCRIBE







UNSUBSCRIBE


Jeffrey A. Jones

Constellation Energy Group,

Engineering & Forensics- Information Security Management

(443) 394-2959

mailto: [EMAIL PROTECTED] 


>>> This e-mail and any attachments are confidential, may contain legal, 
>>> professional or other privileged information, and are intended solely for 
>>> the addressee.  If you are not the intended recipient, do not use the 
>>> information in this e-mail in any way, delete this e-mail and notify the 
>>> sender. CEG-IP1


_
Peek-a-boo FREE Tricks & Treats for You!
http://www.reallivemoms.com?ocid=TXT_TAGHM&loc=us___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] UNSUBSCRIBE

2007-10-08 Thread Jones, Jeff (Enterprise Security)
UNSUBSCRIBE

Jeffrey A. Jones
Constellation Energy Group,
Engineering & Forensics- Information Security Management
(443) 394-2959
mailto: [EMAIL PROTECTED] 

>>> This e-mail and any attachments are confidential, may contain legal, 
>>> professional or other privileged information, and are intended solely for 
>>> the addressee.  If you are not the intended recipient, do not use the 
>>> information in this e-mail in any way, delete this e-mail and notify the 
>>> sender. CEG-IP1
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] unsubscribe

2007-03-19 Thread Tucker Jeff
unsubscribe


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of
[EMAIL PROTECTED]
Sent: Monday, March 19, 2007 7:00 AM
To: full-disclosure@lists.grok.org.uk
Subject: Full-Disclosure Digest, Vol 25, Issue 27

Send Full-Disclosure mailing list submissions to
full-disclosure@lists.grok.org.uk

To subscribe or unsubscribe via the World Wide Web, visit
https://lists.grok.org.uk/mailman/listinfo/full-disclosure
or, via email, send a message with subject or body 'help' to
[EMAIL PROTECTED]

You can reach the person managing the list at
[EMAIL PROTECTED]

When replying, please edit your Subject line so it is more specific
than "Re: Contents of Full-Disclosure digest..."


Note to digest recipients - when replying to digest posts, please trim
your post appropriately. Thank you.


Today's Topics:

   1. Web Security and Bookmarklet Exploits (pdp (architect))
   2. [SECURITY] [DSA 1269-1] New lookup-el packagesfix insecure
  temporary file (Martin Schulze)
   3. nac-gaf spam attacks (Steve Cooperman)
   4. [ GLSA 200703-17 ] ulogd: Remote execution of arbitrary code
  (Raphael Marichez)
   5. [ GLSA 200703-18 ] Mozilla Thunderbird: Multiple
  vulnerabilities (Raphael Marichez)
   6. [ GLSA 200703-19 ] LTSP: Authentication bypass in included
  LibVNCServer code (Raphael Marichez)
   7. [ GLSA 200703-20 ] LSAT: Insecure temporary file  creation
  (Raphael Marichez)
   8. Re: [WEB SECURITY] GMail Contact Information  Disclosure PoC
  ([EMAIL PROTECTED])


--

Message: 1
Date: Sun, 18 Mar 2007 08:58:20 +
From: "pdp (architect)" <[EMAIL PROTECTED]>
Subject: [Full-disclosure] Web Security and Bookmarklet Exploits
To: full-disclosure@lists.grok.org.uk, "WASC Forum"
<[EMAIL PROTECTED]>,"webappsec @OWASP"
<[EMAIL PROTECTED]>
Message-ID:
<[EMAIL PROTECTED]>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed

http://www.gnucitizen.org/blog/sex-candies-and-bookmarklet-exploits
http://www.gnucitizen.org/projects/technika/

I have rolled out a new Technika browser extension. It is very small
and extremely fast. Technika also integrates with Firebug, so you can
easily test and compose Bookmarklets on the fly. The article that I
pointed above discusses how Bookmarklets can be used to compose web
app exploits. There is a framework similar to metasploit that will
come out very soon. I thought that it might be a good idea to share
these ideas now, so the community knows what to expect in the future.
Thanks.

-- 
pdp (architect) | petko d. petkov
http://www.gnucitizen.org



--

Message: 2
Date: Sun, 18 Mar 2007 18:37:56 +0100 (CET)
From: [EMAIL PROTECTED] (Martin Schulze)
Subject: [Full-disclosure] [SECURITY] [DSA 1269-1] New lookup-el
packagesfix insecure temporary file
To: debian-security-announce@lists.debian.org (Debian Security
Announcements)
Message-ID: <[EMAIL PROTECTED]>
Content-Type: text/plain; charset=iso-8859-1

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

-

--
Debian Security Advisory DSA 1269-1
[EMAIL PROTECTED]
http://www.debian.org/security/ Martin
Schulze
March 18th, 2007
http://www.debian.org/security/faq
-

--

Package: lookup-el
Vulnerability  : insecure temporary file
Problem type   : local
Debian-specific: no
CVE ID : CVE-2007-0237

Tatsuya Kinoshita discovered that Lookup, a search interface to
electronic dictionaries on emacsen, creates a temporary file in an
insecure fashion when the ndeb-binary feature is used, which allows a
local attacker to craft a symlink attack to overwrite arbitrary files.

For the stable distribution (sarge) this problem has been fixed in
version 1.4-3sarge1.

For the testing distribution (etch) this problem has been fixed in
version 1.4-5.

For the unstable distribution (sid) this problem has been fixed in
version 1.4-5.

We recommend that you upgrade your lookup-el package.


Upgrade Instructions
- 

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given at the end of this advisory:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge
- 

  Source archives:

 
http://security.debian.org/pool/updates/main/l/lookup-el/lookup-el_1.4-3
sarge1.dsc
  Size/MD5 checksum:  585 2daf45b112f1b688658faf610308962e
 
http://security.debian.org/pool/updates/main/l

[Full-disclosure] unsubscribe

2006-08-14 Thread mailing lists
unsubscribe



 On Sun, 13 Aug 2006 12:00:10 +0100 (BST)
[EMAIL PROTECTED] wrote
> Send Full-Disclosure mailing list submissions to
>   full-disclosure@lists.grok.org.uk
> 
> To subscribe or unsubscribe via the World Wide Web, visit
>   https://lists.grok.org.uk/mailman/listinfo/full-disclosure
> or, via email, send a message with subject or body 'help' to
>   [EMAIL PROTECTED]
> 
> You can reach the person managing the list at
>   [EMAIL PROTECTED]
> 
> When replying, please edit your Subject line so it is more specific
> than "Re: Contents of Full-Disclosure digest..."
> 
> 
> Note to digest recipients - when replying to digest posts, please trim your 
> post
> appropriately. Thank you.
> 
> 
> Today's Topics:
> 
>1. Re: Getting rid of Gadi Evron and Dude VanWinkle (Aaron Gray)
>2. Re: Server Redundancy (wac)
>3. what can be done with botnet C&C's? (fwd) (Gadi Evron)
> 
> 
> --
> 
> Message: 1
> Date: Sun, 13 Aug 2006 01:25:18 +0100
> From: Aaron Gray <[EMAIL PROTECTED]>
> Subject: Re: [Full-disclosure] Getting rid of Gadi Evron and Dude
>   VanWinkle
> To: full-disclosure@lists.grok.org.uk
> Message-ID: <[EMAIL PROTECTED]>
> Content-Type: text/plain; charset=ISO-8859-1; format=flowed
> 
> l4m3r
> 
> vodka hooch wrote:
> > hi
> >  
> > for months now we've had to put up
> >  
> > now its time to shut up
> >  
> > how do i setup my gmail?
> >  
> > i know this is unmoderated list but im pulling my hair out to sift 
> > through the real email
> >  
> > please dont turn full dis into symantec trolltraq, hlp me! :)
> >  
> > -gs
> >  
> >
> > 
> > Yahoo! Messenger with Voice. Make PC-to-Phone Calls 
> >
>

> 
> > to the US (and 30+ countries) for 2¢/min or less.
> > 
> >
> > ___
> > Full-Disclosure - We believe in it.
> > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > Hosted and sponsored by Secunia - http://secunia.com/
> > 
> >
> > No virus found in this incoming message.
> > Checked by AVG Free Edition.
> > Version: 7.1.405 / Virus Database: 268.10.9/417 - Release Date: 11/08/2006
> >   
> 
> 
> 
> --
> 
> Message: 2
> Date: Sat, 12 Aug 2006 22:39:16 -0400
> From: wac <[EMAIL PROTECTED]>
> Subject: Re: [Full-disclosure] Server Redundancy
> To: "Tim Hecktor" <[EMAIL PROTECTED]>
> Cc: full-disclosure@lists.grok.org.uk
> Message-ID:
>   <[EMAIL PROTECTED]>
> Content-Type: text/plain; charset="iso-8859-1"
> 
> Hi:
> 
> Thanks I'll check ipvs.
> 
> Regards
> Waldo
> 
> On 8/10/06, Tim Hecktor <[EMAIL PROTECTED]> wrote:
> >
> >  Hello,
> >
> >  >  >
> > Maybe this is what you are looking for:
> >
> > pandora:~# dig ftp.freenet.de
> >
> > ; <<>> DiG 9.2.1 <<>> ftp.freenet.de
> > ;; global options:  printcmd
> > ;; Got answer:
> > ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 59136
> > ;; flags: qr rd ra; QUERY: 1, ANSWER: 5, AUTHORITY: 3, ADDITIONAL: 3
> >
> > ;; QUESTION SECTION:
> > ;ftp.freenet.de.IN  A
> >
> > ;; ANSWER SECTION:
> > ftp.freenet.de. 1457IN  CNAME   ftp-0.freenet.de.
> > ftp-0.freenet.de.   600 IN  A   194.97.2.69
> > ftp-0.freenet.de.   600 IN  A   194.97.2.70
> > ftp-0.freenet.de.   600 IN  A   194.97.2.67
> > ftp-0.freenet.de.   600 IN  A   194.97.2.68
> >
> > This will map a name to more than one ip and will give you load-balancing
> > this way, but not real redundancy.
> > To map a service to different hosts redundant you can use a box running
> > ipvs. This box can be made redundant with a identical box using mon and
> > heartbeat to do ip failover.
> >
> > Best regards,
> >
> > Tim Hecktor
> >
> -- next part --
> An HTML attachment was scrubbed...
> URL:
>
http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20060812/3579b5dd/attachment-0001.html
> 
> --
> 
> Message: 3
> Date: Sun, 13 Aug 2006 01:43:35 -0500 (CDT)
> From: Gadi Evron <[EMAIL PROTECTED]>
> Subject: [Full-disclosure] what can be done with botnet C&C's? (fwd)
> To: full-disclosure@lists.grok.org.uk
> Message-ID: <[EMAIL PROTECTED]>
> Content-Type: TEXT/PLAIN; charset=US-ASCII
> 
> Hi guys, here is a forward of my follow-up to the previous message.
> 
>   Gadi.
> 
> -- Forwarded message --
> Date: Sat, 12 Aug 2006 13:12:30 -0500 (CDT)
> From: Gadi Evron <[EMAIL PROTECTED]>
> To: botnets@whitestar.linuxbox.org
> Subject: what can be done with botnet C&C's?
> 
> In my last email message I addressed some of the issues relate

[Full-disclosure] Unsubscribe

2006-08-01 Thread Stephen Walker










Unsubscribe








___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] unsubscribe athame [EMAIL PROTECTED]

2006-07-13 Thread Dan
unsubscribe athame [EMAIL PROTECTED]

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/