[Full-disclosure] [USN-600-1] rsync vulnerability

2008-04-11 Thread Kees Cook
=== Ubuntu Security Notice USN-600-1 April 11, 2008 rsync vulnerability CVE-2008-1720 === A security issue affects the following Ubuntu releases: Ubuntu 7.04 Ubuntu 7.10

[Full-disclosure] [ GLSA 200804-11 ] policyd-weight: Insecure temporary file creation

2008-04-11 Thread Robert Buchholz
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200804-11 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

[Full-disclosure] [ GLSA 200804-12 ] gnome-screensaver: Privilege escalation

2008-04-11 Thread Raphael Marichez
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200804-12 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread n3td3v
On Fri, Apr 11, 2008 at 4:59 AM, scott [EMAIL PROTECTED] wrote: You have admitted that all you do is scrape other sites and post their knowledge to your agenda group. Basically, you're saying you are a journalist wanna-be. A wanna-be newspaper with a google-group page. I'm interested in

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread Razi Shaban
I'm interested in journalism because it's an extension of what i do: exploring, finding angles for things that others miss, sharing the uniqueness of the world. ---Adrian Lamo. How about you explore somewhere else? ___ Full-Disclosure - We

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread n3td3v
On Fri, Apr 11, 2008 at 6:32 PM, Razi Shaban [EMAIL PROTECTED] wrote: How about you explore somewhere else? Razi Shaban, why are you on the list? All you've been doing is trolling me like Ureleet has and causing threads to go into 60+ e-mails for no reason. n3td3v

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread Mercury Vapour
On Fri, Apr 11, 2008 at 10:32 AM, Razi Shaban [EMAIL PROTECTED] wrote: I'm interested in journalism because it's an extension of what i do: exploring, finding angles for things that others miss, sharing the uniqueness of the world. ---Adrian Lamo. How about you explore somewhere else?

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread Nate McFeters
n3td3v, all of your emails get like this cause you make stupid points like: I think all conference emails should be moved to a separate list cause they're evil Nate On 4/11/08, n3td3v [EMAIL PROTECTED] wrote: On Fri, Apr 11, 2008 at 6:32 PM, Razi Shaban [EMAIL PROTECTED] wrote: How

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread Ureleet
im not trolling you, please try not and paint me like that. im just asking questions. if you take offense to that, then i dont know what to say. On Fri, Apr 11, 2008 at 2:00 PM, n3td3v [EMAIL PROTECTED] wrote: On Fri, Apr 11, 2008 at 6:32 PM, Razi Shaban [EMAIL PROTECTED] wrote: How about

[Full-disclosure] Directory traversal and multiple Denials of Service in HP OpenView NNM 7.53

2008-04-11 Thread Luigi Auriemma
### Luigi Auriemma Application: HP OpenView Network Node Manager http://www.openview.hp.com/products/nnm/ Versions: = 7.53 Platforms:Windows (tested), Solaris, Linux, HP-UX

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread Ureleet
yet, i still dont know why he doesnt volunteer to make one. from my point of view hes just a much a part of the security community as we are, good or bad, yet he doesnt want to do any work to help it. On Fri, Apr 11, 2008 at 2:26 PM, Nate McFeters [EMAIL PROTECTED] wrote: n3td3v, all of your

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread josh
How about everyone just STFU. You are killing me with these damn emails. I've not been reading them but I do glance over the subject, sender, and sometime a bit of the body, so I don't really know what's going on, but what I do know is that I am really tired of the same email subject spam my

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread Nate McFeters
My e-Dick is huge. Thanks, Nate On 4/11/08, josh [EMAIL PROTECTED] wrote: How about everyone just STFU. You are killing me with these damn emails. I've not been reading them but I do glance over the subject, sender, and sometime a bit of the body, so I don't really know what's going on,

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread Nate McFeters
Sorry, couldn't help myself. Nate On 4/11/08, Nate McFeters [EMAIL PROTECTED] wrote: My e-Dick is huge. Thanks, Nate On 4/11/08, josh [EMAIL PROTECTED] wrote: How about everyone just STFU. You are killing me with these damn emails. I've not been reading them but I do glance over

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread offbitz
Har Har Har. This is great. I liken it to a public pissing contest, except that you're all pissing into the wind with every email you send. Good luck with that. BTW Nate, Gmail won't let me send my E-dick. It's too big. (I could help myself, but I won't) That is all.

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (conf May21/22 2008)

2008-04-11 Thread n3td3v
On Fri, Apr 11, 2008 at 7:32 PM, Ureleet [EMAIL PROTECTED] wrote: i still dont know why he doesnt volunteer to make one. I'm not setting up a mailing list that makes big companies £1000 per person, its upto the industry to do that.

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread Nate McFeters
Hahahhaa, nice, very nice. On 4/11/08, offbitz [EMAIL PROTECTED] wrote: Har Har Har. This is great. I liken it to a public pissing contest, except that you're all pissing into the wind with every email you send. Good luck with that. BTW Nate, Gmail won't let me send my E-dick. It's too

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread n3td3v
On Fri, Apr 11, 2008 at 9:41 PM, n3td3v [EMAIL PROTECTED] wrote: On Fri, Apr 11, 2008 at 7:32 PM, Ureleet [EMAIL PROTECTED] wrote: i still dont know why he doesnt volunteer to make one. I'm not setting up a mailing list that makes big companies £1000 per person, its upto the industry to do

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread Nate McFeters
The industry and the community say fuck off n3td3v. Nate On 4/11/08, n3td3v [EMAIL PROTECTED] wrote: On Fri, Apr 11, 2008 at 9:41 PM, n3td3v [EMAIL PROTECTED] wrote: On Fri, Apr 11, 2008 at 7:32 PM, Ureleet [EMAIL PROTECTED] wrote: i still dont know why he doesnt volunteer to make one.

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread malix
No truer statement yet made, Nate. If I could whip out my E-dick and flog n3td3v with it I would. n3td3v, please, please, please take a flying fuck at a rolling donut, go away forever, and leave this list to its charter, vulnerability disclosures, not your wannabe asshat agenda. On Fri, 11 Apr

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread Nate McFeters
setup your own list. Run it yourself. Spam your agenda out there. Nate On 4/11/08, n3td3v [EMAIL PROTECTED] wrote: On 4/11/08, n3td3v [EMAIL PROTECTED] wrote: On Fri, Apr 11, 2008 at 10:51 PM, [EMAIL PROTECTED] wrote: vulnerability disclosures That's what the list is supposed

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread n3td3v
On Fri, Apr 11, 2008 at 11:31 PM, n3td3v [EMAIL PROTECTED] wrote: On 4/11/08, n3td3v [EMAIL PROTECTED] wrote: On Fri, Apr 11, 2008 at 10:51 PM, [EMAIL PROTECTED] wrote: vulnerability disclosures That's what the list is supposed to be for before e-commerce moved in. I'm calling

[Full-disclosure] IOActive Security Advisory: Incorrect input validation in PyString_FromStringAndSize() leads to multiple buffer overflows

2008-04-11 Thread Justin Ferguson
Title: Incorrect input validation in PyString_FromStringAndSize() leads to multiple buffer overflows Date Discoverd: ??-April-2008 Date Reported: 08-April-2008 Date Patched: 09-April-2008 Date Disclosed: 11-April-2008 Criticality: High Affected Products - Python 2.5.2,

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread Jeptha . Gibbs
It looks as if your ulterior motive is simply to make this list in capable of achieving it's objective. For month's now, we've subjected to your vapid rantings, and the original focus purpose has become secondary to the focused bile towards you. It would be hard to quantify how many

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/22 2008)

2008-04-11 Thread n3td3v
On Fri, Apr 11, 2008 at 11:42 PM, [EMAIL PROTECTED] wrote: Hopefully, Mr. Cartwright will follows his guidelines and simply block you, and then perhaps we can get back to real business. Hopefully John will reject business jerks like you and return the list to its former state as the peoples

Re: [Full-disclosure] EUSecWest CFP Closes April 14th (confMay21/222008)

2008-04-11 Thread Mike
My God I just scrolled back 4 days and it's all mostly your FUCKEN SHIT n3tdunce fuck off and shut up! I've been on this list for years but now it's time for goodbye, I can't be bothered filtering through all the crap anymore. RIP FD you use to be useful once! -Original Message- From:

[Full-disclosure] netdev threadjack and spam and al-qaeda mi5 underground contacts secrets

2008-04-11 Thread Randal T. Rioux
On Fri, April 11, 2008 4:41 pm, n3td3v wrote: I'm an unemployed working class dude, i'm not part of the industry. Can one be unemployed and working class at the same time? If one works in security in a capacity to earn an income, would that not automatically place them in the industry?

[Full-disclosure] ban n3td3v

2008-04-11 Thread N/A N/A
full-disclosure@lists.grok.org.ukList This is a request to ban n3td3v from full-disclosure, here is a poll titled Do you want n3td3v banned from full-disclosure and I hope that a moderator will take notice. http://snappoll.com/poll/263962.php It is sad having to bother with a troll like

Re: [Full-disclosure] ban n3td3v

2008-04-11 Thread n3td3v
How should Full-Disclosure be funded? 1. Public Donations 2. Business World Vote http://snappoll.com/poll/263983.php ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by

Re: [Full-disclosure] ban n3td3v

2008-04-11 Thread T Biehn
You have to donate 5$ to ban someone? On Fri, Apr 11, 2008 at 11:25 PM, n3td3v [EMAIL PROTECTED] wrote: How should Full-Disclosure be funded? 1. Public Donations 2. Business World Vote http://snappoll.com/poll/263983.php ___