MDKSA-2003:026 - Updated shadow-utils packages fix improper mailspool ownership

2003-02-27 Thread Mandrake Linux Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Mandrake Linux Security Update Advisory Package name: shadow-utils Advisory

Re: Secunia Research: Opera browser Cross Site Scripting

2003-02-27 Thread Axel Beckert - ecos gmbh
Hi! Am Wed, Feb 26, 2003 at 04:00:55PM +0100, Jakob Balle schrieb: == 2) Affected Software Following have been tested and found vulnerable: Opera prior to 7.02 on Windows [...]

Re: Netscape 6/7 crashes by a simple stylesheet...

2003-02-27 Thread Greg Steuck
Yes, it had been known for a while. Searching for style overflow scroll in bugzilla brings up a list of bug reports. So, instead of posting to bugtraq you could have added a note to one of those bug reports. Then again, posting here might put some pressure on mozilla developers, who knows? jux

MS-Windows ME IE/Outlook/HelpCenter critical vulnerability

2003-02-27 Thread Fozzy
--[ Summary ]-- From the Microsoft Security Bulletin MS03-006: A security vulnerability is present in the Windows Me version of Help and Support Center [...]. An attacker could exploit the vulnerability by constructing a URL that, when clicked on by the user, would execute code of the

ISMAIL (All Versions) Remote Buffer Overrun

2003-02-27 Thread NGSSoftware Insight Security Research
NGSSoftware Insight Security Research Advisory Name:ISMAIL v 1.25 v 1.4.3 Remote Buffer Overrun Systems Affected: WinNT, Win2K, XP Severity: High Risk Category: Remote Buffer Overrun Vendor URL: http://instantservers.com/ismail.html

[SECURITY] [DSA 254-1] New NANOG traceroute packages fix buffer overflow

2003-02-27 Thread Martin Schulze
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 254-1 [EMAIL PROTECTED] http://www.debian.org/security/ Martin Schulze February 27th, 2003

Ecardis Password Reseting Vulnerability

2003-02-27 Thread Haluk AYDIN
Hi, I don't know if someone has discovered this before but Ecartis 1.0.0 (former listar) contains a vulnerability that enables an attacker to reset passwords of any user defined on the list server, including the list admins. After logging on as a non-priviledged user, Ecartis enables the

Re: Netscape 6/7 crashes by a simple stylesheet...

2003-02-27 Thread Frankie
This looks like http://bugzilla.mozilla.org/show_bug.cgi?id=189118 Tested Jocke's page on Mozilla for MacOS X. Worked fine, no effect. The top command said Mozilla was using under 2% of my CPU. Jocke wrote: html body div style=position:absolute; div style=position:absolute;

Re: poc zlib sploit just for fun :)

2003-02-27 Thread Ralf S. Engelschall
In article [EMAIL PROTECTED] you wrote: [...] Attached below is a patch RK and I whipped up yesterday, after I caught wind of this problem sometime in the afternoon. [...] Thanks for your efforts. We've reviewed your patch for inclusion into our OpenPKG zlib package and discovered that

Re: Self-Executing HTML: Internet Explorer 5.5 and 6.0 Part II

2003-02-27 Thread D'Amato Luigi
Confirm on 6.0.2800.1106 On my IE is present: SP1, q324929, q810847, q813951 D'Amato Luigi Admin www.securitywireless.info - Original Message - From: Dike [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Tuesday, February 25, 2003 1:50 PM Subject: RE: Self-Executing HTML: Internet Explorer

Re: [VSA0307] Battlefield 1942 remote DoS

2003-02-27 Thread VOID.AT Security
Overview By sending a specially crafted packet to the bf1942-server remote administration port, an attacker can cause the server to crash. After getting some reports, it seems that only servers running on Windows XP are vulnerable. Can someone confirm this? greuff pgp0.pgp

Buffer Overrun Vulnerability in /sbin/ps on IRIX

2003-02-27 Thread SGI Security Coordinator
-BEGIN PGP SIGNED MESSAGE- __ SGI Security Advisory Title: Buffer Overrun Vulnerability in /sbin/ps Number : 20030202-01-I Date : February 26, 2003 Reference: CVE-1999-0301

SuSE Security Announcement: hypermail (SuSE-SA:2003:0012)

2003-02-27 Thread Thomas Biege
-BEGIN PGP SIGNED MESSAGE- __ SuSE Security Announcement Package:hypermail Announcement-ID:SuSE-SA:2003:0012 Date:

iDEFENSE Security Advisory 02.27.03: TCPDUMP Denial of Service Vulnerability in ISAKMP Packet Parsing

2003-02-27 Thread iDEFENSE Labs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 iDEFENSE Security Advisory 02.27.03: http://www.idefense.com/advisory/02.27.03.txt TCPDUMP Denial of Service Vulnerability in ISAKMP Packet Parsing February 27, 2003 I. BACKGROUND TCPDUMP is a widely used network debugging tool that prints out the

Invision Power Board (PHP)

2003-02-27 Thread Frog Man
Informations : °° Website : http://www.invisionboard.com -- Version : 1.0.1 Problem : phpinfo() -- Version : 1.1.1 Problem : File Including PHP Code/Location : °°° v1.0.1 : phpinfo.php : -- ?php phpinfo(); ?

Re: MS-Windows ME IE/Outlook/HelpCenter critical vulnerability

2003-02-27 Thread Fozzy
Hi, My post entitled MS-Windows ME IE/Outlook/HelpCenter critical vulnerability was parsed incorrectly by the securityfocus mailing-list manager, giving me a From: adress [EMAIL PROTECTED]. My contact e-mail is [EMAIL PROTECTED] I am not, in any way, a member of securityfocus.com. Thanks,

Mandrake 9.0 local root exploit

2003-02-27 Thread Priv8 Security
-- Priv8 Security - www.priv8security.com priv8mdk90.tar.gz - Mandrake 9.0 local root exploit Based on Idefense adv. http://www.idefense.com/advisory/01.21.03.txt Greets to :

[SECURITY] [DSA 255-1] New tcpdump packages fix denial of service vulnerability

2003-02-27 Thread Martin Schulze
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 255-1 [EMAIL PROTECTED] http://www.debian.org/security/ Martin Schulze February 27th, 2003