[Full-disclosure] VMSA-2008-0015 Updated ESXi and ESX 3.5 packages address critical security issue in openwsman

2008-09-18 Thread VMware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - VMware Security Advisory Advisory ID: VMSA-2008-0015 Synopsis: Updated ESXi and ESX 3.5 packages address critical security

[Full-disclosure] [TKADV2008-008] G DATA AntiVirus/InternetSecurity/TotalCare 2008 GDTdiIcpt.sys Memory Corruption Vulnerability

2008-09-18 Thread Tobias Klein
Please find attached a detailed advisory of the vulnerability. Alternatively, the advisory can also be found at: http://www.trapkit.de/advisories/TKADV2008-008.txt -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Advisory: G DATA AntiVirus/InternetSecurity/TotalCare 2008

[Full-disclosure] ignore this hash

2008-09-18 Thread Knud Erik Højgaard
sorry, $ sha256sum.exe snot 44f58422566c9540dc979c681b55bf689b04a2fdf5fb43f876452861ac98f23b *snot ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com

[Full-disclosure] [USN-646-1] rdesktop vulnerabilities

2008-09-18 Thread Jamie Strandboge
=== Ubuntu Security Notice USN-646-1 September 18, 2008 rdesktop vulnerabilities CVE-2008-1801, CVE-2008-1802, CVE-2008-1803 === A security issue affects the following Ubuntu re

Re: [Full-disclosure] menalto gallery: Session hijacking vulnerability,CVE-2008-3662

2008-09-18 Thread Valdis . Kletnieks
On Thu, 18 Sep 2008 22:58:42 +0400, Kristo pher said: > for fuck's sake dude! half of the planet, military, government, financial > sites suffer from this and the best you could come up with is a fucking photo > album no one uses! do everybody a favor and die you lame fuck! Every hacker has to sta

Re: [Full-disclosure] menalto gallery: Session hijacking vulnerability,CVE-2008-3662

2008-09-18 Thread Kristo pher
-Original Message- From: Hanno Böck <[EMAIL PROTECTED]> > menalto gallery: Session hijacking vulnerability, CVE-2008-3662 for fuck's sake dude! half of the planet, military, government, financial sites suffer from this and the best you could come up with is a fucking photo album no on

Re: [Full-disclosure] NetDDE/OPC UA.

2008-09-18 Thread Dave Aitel
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [EMAIL PROTECTED] wrote: | I'm researching into some SCADA material; does anyone have any | documentation pertaining to NetDDE exploitation or OPC UA research/exposure? | | Thanks. | | - There was some good stuff on this in l

[Full-disclosure] menalto gallery: Session hijacking vulnerability, CVE-2008-3662

2008-09-18 Thread Hanno Böck
menalto gallery: Session hijacking vulnerability, CVE-2008-3662 References http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3662 http://int21.de/cve/CVE-2008-3662-gallery.html http://gallery.menalto.com/gallery_2.2.6_released http://enablesecurity.com/2008/08/11/surf-jack-https-will-not-sav

[Full-disclosure] [IVIZ-08-010] McAfee SafeBoot Device Encryption Plain Text Password Disclosure (v4, Build 4750 and below)

2008-09-18 Thread iViZ Security Advisories
--- [ iViZ Security Advisory 08-01017/09/2008 ] --- iViZ Techno Solutions Pvt. Ltd. http://

Re: [Full-disclosure] n3td3v not a troll

2008-09-18 Thread Anders Klixbull
then you gadi and n3td3v should jump off a cliff -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Ureleet Sent: 18. september 2008 02:28 To: n3td3v Cc: full-disclosure@lists.grok.org.uk Subject: Re: [Full-disclosure] n3td3v not a troll i no gadi. u have

Re: [Full-disclosure] n3td3v not a troll

2008-09-18 Thread Henri Laitinen
why don't you all just fix your spam filters and get over with it. ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/