[Full-disclosure] Invade Australia!

2007-09-19 Thread Lord flimney
Of all the needed invasions in all of the evil countries in the world, foremost is the one for Australia. The liberal media has once again chosen to ignore the tyrannies, transgressions and evilties committed by this damnable country. Invade Australia!--Lord Flimney ___

[Full-disclosure] rPSA-2007-0189-1 openoffice.org

2007-09-19 Thread rPath Update Announcements
rPath Security Advisory: 2007-0189-1 Published: 2007-09-18 Products: rPath Linux 1 Rating: Minor Exposure Level Classification: Indirect User Deterministic Unauthorized Access Updated Versions: openoffice.org=/[EMAIL PROTECTED]:devel//1/2.2-0.3-1 References: http://cve.mitre.org/cgi-bi

[Full-disclosure] rPSA-2007-0190-1 kdebase

2007-09-19 Thread rPath Update Announcements
rPath Security Advisory: 2007-0190-1 Published: 2007-09-18 Products: rPath Linux 1 Rating: Minor Exposure Level Classification: Indirect User Non-deterministic Information Exposure Updated Versions: kdebase=/[EMAIL PROTECTED]:devel//1/3.4.2-3.13-1 References: http://cve.mitre.org/cgi-b

[Full-disclosure] [MU-200709-02] Dibbler Remote Denial of Service Vulnerability

2007-09-19 Thread noreply
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Dibbler Remote Denial of Service Vulnerability [MU-200709-02] September 18, 2007 http://labs.musecurity.com/advisories.html Affected Products/Versions: Dibbler 0.6.0 http://klub.com.pl/dhcpv6/ Product Overview: Dibbler is a portable DHCPv6 impleme

[Full-disclosure] Multiple vulnerabilities in the gMotor2 engine

2007-09-19 Thread Luigi Auriemma
Only an update about the advisory I released one month ago for the rFactor game. This game uses the same gMotor2 engine which is used also by many other well known games like F1 Challenge 99-02, GT Legends, GTR, GTR 2, RACE, Race 07, BMW M3 Challenge and so on. The new advisory (not an usual advi

Re: [Full-disclosure] security notice: Backdooring Windows Media Files

2007-09-19 Thread Rahul Mohandas
Could someone send me the POC's please if you have a local copy. Gnucitizen.org is not accessible for me. Thanks - Original Message - From: "pdp (architect)" <[EMAIL PROTECTED]> To: "Memisyazici, Aras" <[EMAIL PROTECTED]> Cc: <[EMAIL PROTECTED]>; Sent: Wednesday, September 19, 2007 12

[Full-disclosure] [Mlabs] Scrutinising SIP Payloads : Traversing Attack Vectors in VOIP and IM

2007-09-19 Thread Aditya K Sood
Hi I have released core research paper on SIP comprising of Payload problems and Attack vectors. This research paper lays stress on the potential weaknesses present in the SIP which make it vulnerable to stringent attacks. The point of discussion is to understand the weak spots in the protocol.

[Full-disclosure] [USN-515-1] t1lib vulnerability

2007-09-19 Thread Kees Cook
=== Ubuntu Security Notice USN-515-1 September 19, 2007 t1lib vulnerability CVE-2007-4033 === A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS Ubuntu 6.1

Re: [Full-disclosure] Panda Antivirus 2008 Local Privileg Escalation (UPS they did it again)

2007-09-19 Thread Panda Security Response
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Regarding the priviledge escalation report below for Panda Antivirus 2008, there is a fix available here: http://www.pandasecurity.com/homeusers/support/card?id=4&idIdioma= 2&ref=PAV08Dev Users of vulnerable 2007 versions should upgrade to Panda

[Full-disclosure] [ GLSA 200709-12 ] Poppler: Two buffer overflow vulnerabilities

2007-09-19 Thread Raphael Marichez
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200709-12 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - - -

[Full-disclosure] rPSA-2007-0193-1 gdm

2007-09-19 Thread rPath Update Announcements
rPath Security Advisory: 2007-0193-1 Published: 2007-09-19 Products: rPath Linux 1 Rating: Major Exposure Level Classification: Local Deterministic Denial of Service Updated Versions: gdm=/[EMAIL PROTECTED]:devel//1/2.8.0.8-0.2-1 References: http://cve.mitre.org/cgi-bin/cvename.cgi?nam

Re: [Full-disclosure] security notice: Backdooring Windows Media Files

2007-09-19 Thread pdp (architect)
back online... too many visitors lately On 9/19/07, Rahul Mohandas <[EMAIL PROTECTED]> wrote: > Could someone send me the POC's please if you have a local copy. > Gnucitizen.org is not accessible for me. > > Thanks > > > - Original Message - > From: "pdp (architect)" <[EMAIL PROTECTED]> >

[Full-disclosure] [SECURITY] [DSA 1364-2] New vim packages fix several vulnerabilities

2007-09-19 Thread dann frazier
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - -- Debian Security Advisory DSA 1364-2[EMAIL PROTECTED] http://www.debian.org/security/ dann frazier September 19th, 2007

[Full-disclosure] VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player

2007-09-19 Thread VMware Security team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - --- VMware Security Advisory Advisory ID: VMSA-2007-0006 Synopsis: Critical security updates for all supported versions of VMwar

Re: [Full-disclosure] [Mlabs] Scrutinising SIP Payloads : Traversing Attack Vectors in VOIP and IM

2007-09-19 Thread Lamer Buster
hello cranky! so you recently diverted your attention to steal others work without giving any credits and get glorified. Do you think this community is such a fool that it can not idenitfy your plagiarism. SIP and its related issues are known for years. Anyone who is yet to explore it, look for S