Re: [Full-disclosure] [funsec] Internet attacks against Georgian web s ites

2008-09-11 Thread mutiny
Anybody making n3td3v stickers that read: "Somebody lied to him and Iraq happened."? I am buying, so long as n3td3v doesn't make them, or receive proceeds (of course). - mutiny n3td3v wrote: > On Mon, Sep 8, 2008 at 2:41 AM, Ureleet <[EMAIL PROTECTED]> wrote: >> drink yourself to death. thank

[Full-disclosure] [TKADV2008-007] Linux Kernel SCTP-AUTH API Information Disclosure Vulnerability and NULL Pointer Dereferences

2008-09-11 Thread Tobias Klein
Please find attached a detailed advisory of the vulnerabilities. Alternatively, the advisory can also be found at: http://www.trapkit.de/advisories/TKADV2008-007.txt ÿþ-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Advisory:

Re: [Full-disclosure] News from Black Hat: Upcoming Events and a New Webcast

2008-09-11 Thread n3td3v
Hello Sir Moss, Can you release the materials for the Marcus Sachs presentation early, since his remarks are about the US election and its about to start in 2 weeks. All the best, n3td3v On Thu, Sep 11, 2008 at 5:48 AM, jmoss <[EMAIL PROTECTED]> wrote: > Full Disclosure Ninjas, > > This year's

Re: [Full-disclosure] News from Black Hat: Upcoming Events and a New Webcast

2008-09-11 Thread n3td3v
On Thu, Sep 11, 2008 at 9:49 AM, n3td3v <[EMAIL PROTECTED]> wrote: > Hello Sir Moss, > > Can you release the materials for the Marcus Sachs presentation early, > since his remarks are about the US election and its about to start in > 2 weeks. > 2 months not two weeks.lol _

Re: [Full-disclosure] [funsec] Internet attacks against Georgian web s ites

2008-09-11 Thread n3td3v
On Wed, Sep 10, 2008 at 10:10 AM, mutiny <[EMAIL PROTECTED]> wrote: > Anybody making n3td3v stickers that read: > "Somebody lied to him and Iraq happened."? > > I am buying, so long as n3td3v doesn't make them, or receive proceeds > (of course). > > - mutiny > lolololol.

[Full-disclosure] n.runs-SA-2008.006 - Horde - Cross-Site Scripting in filename MIME attachments

2008-09-11 Thread [EMAIL PROTECTED]
n.runs AG http://www.nruns.com/ security(at)nruns.com n.runs-SA-2008.006 11-Sep-2008 Vendor:The Horde Project, http://www.horde.org/ Affec

[Full-disclosure] n.runs-SA-2008.007 - Cross-Site Scripting Filter Evasion in various frameworks / applications

2008-09-11 Thread [EMAIL PROTECTED]
n.runs AG http://www.nruns.com/ security(at)nruns.com n.runs-SA-2008.007 11-Sep-2008 Vendor:Various Affected Products: Horde >= 3.1, <

[Full-disclosure] Advisory 04/2008: Joomla Weak Random Password Reset Token Vulnerability

2008-09-11 Thread Stefan Esser
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SektionEins GmbH www.sektioneins.de -= Security Advisory =- Advisory: Joomla Weak Random Password Reset Token Vulnerability Release Date: 2008/09/11 Last Modified: 2008

Re: [Full-disclosure] News from Black Hat: Upcoming Events and a New Webcast

2008-09-11 Thread n3td3v
On Thu, Sep 11, 2008 at 10:12 AM, n3td3v <[EMAIL PROTECTED]> wrote: > On Thu, Sep 11, 2008 at 9:49 AM, n3td3v <[EMAIL PROTECTED]> wrote: >> Hello Sir Moss, >> >> Can you release the materials for the Marcus Sachs presentation early, >> since his remarks are about the US election and its about to st

[Full-disclosure] [SECURITY] [DSA 1636-1] New Linux 2.6.24 packages fix several vulnerabilities

2008-09-11 Thread dann frazier
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA-1636-1[EMAIL PROTECTED] http://www.debian.org/security/ dann frazier Sep 11, 2008htt

[Full-disclosure] [USN-643-1] FreeType vulnerabilities

2008-09-11 Thread Kees Cook
=== Ubuntu Security Notice USN-643-1 September 11, 2008 freetype vulnerabilities CVE-2008-1806, CVE-2008-1807, CVE-2008-1808 === A security issue affects the following Ubuntu re

[Full-disclosure] [USN-644-1] libxml2 vulnerabilities

2008-09-11 Thread Kees Cook
=== Ubuntu Security Notice USN-644-1 September 11, 2008 libxml2 vulnerabilities CVE-2008-3281, CVE-2008-3529 === A security issue affects the following Ubuntu releases: Ubuntu

[Full-disclosure] Server termination in the Unreal engine 3

2008-09-11 Thread Luigi Auriemma
### Luigi Auriemma Application: Unreal engine 3 http://www.unrealtechnology.com Versions: the bug affects various games which use the Unreal engine 3 like Unreal Tour

[Full-disclosure] Clients format strings in the Unreal engine

2008-09-11 Thread Luigi Auriemma
### Luigi Auriemma Application: Unreal engine http://www.unrealtechnology.com Versions: almost any game which uses the Unreal engine is affected by this vulnerability

[Full-disclosure] [ MDVSA-2008:191 ] rsh

2008-09-11 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:191 http://www.mandriva.com/security/

[Full-disclosure] Advisory 05/2008: Wordpress user_login Column SQL Truncation Vulnerability

2008-09-11 Thread Stefan Esser
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SektionEins GmbH www.sektioneins.de -= Security Advisory =- Advisory: Wordpress user_login Column SQL Truncation Vulnerability Release Date: 2008/09/12 Last Modified: 2

[Full-disclosure] [ MDVSA-2008:192 ] libxml2

2008-09-11 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:192 http://www.mandriva.com/security/