Re: ratelimiting/concurrency limits both inadequate to stop TCP/IP DoS

2001-03-02 Thread Pavel Kankovsky
On Wed, 28 Feb 2001, bert hubert wrote: I'm not certain weather its best to group ip addresses by /16 or /24 - /24 might consume too much memory, /16 might be too broad. Perhaps this should be a tunable parameter. IMHO the best approach would be to group them automatically. The addresses and

def-2001-09: Winzip32 zipandemail Buffer Overflow

2001-03-02 Thread Peter Gründl
== Defcom Labs Advisory def-2001-09 Winzip32 zipandemail Buffer Overflow Author: Peter Grndl [EMAIL PROTECTED] Release Date: 2001-03-02

student full disclosure survey

2001-03-02 Thread Tami Goens
BUGTRAQ subscribers, I'm an Ohio State University MIS Accounting student working on an undergraduate thesis project concerning computer security vulnerability information. I have developed a questionnaire on the topic of full disclosure. I would appreciate your taking ten minutes or so to

Sunftp build9(1) - ftp server Vulnerability

2001-03-02 Thread se00020
It is possible to break out of the root directory by using relative paths e:\crap was used as homedir. of user test. #the get command# getting files from outside of the root dir. 220 chris FTP Server (SunFTP b9) ready on port 21... Benutzer (10.17.3.44:(none)): test 331 Password required

PHPNUKE4.4.1a Advisory

2001-03-02 Thread venomous
r 0 t t e n d e v 1 c e C r e w r0tten dev1ce Crew A r g e n t i n i a n S e c u r i t y G r o u p Argentinian Security Group [( advisory )]---[( rdC270201.adv.en Programa:

[TL-Security-Announce] Updated Public Key

2001-03-02 Thread Manuel Parayo
Please be advised that we have updated our public key as follows: -BEGIN PGP PUBLIC KEY BLOCK- Version: GnuPG v1.0.2 (GNU/Linux) Comment: For info see http://www.gnupg.org mQGiBDqemcIRBACjar+/VcJQ1ePbWjxhULU1YOKLfp/IpU4JoSgse18ugT+ODq+K

Security Update: buffer overflow in /bin/mail CSSA-2001-010.0

2001-03-02 Thread Caldera Support Info
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 __ Caldera Systems, Inc. Security Advisory Subject:buffer overflow in /bin/mail Advisory number:CSSA-2001-010.0 Issue date:

Administrivia

2001-03-02 Thread Ben Greenbaum
Over the weekend, I will be returning the Bugtraq helm to Aleph One. It has been a pleasure and an honor to moderate the list, and thank you all for your patience with me while I "got the hang of it". It's certainly more difficult than it looks :) Best wishes, Ben Greenbaum Director of Site