Re: [Full-disclosure] Multiple Flash Authoring Heap Overflows - Malformed SWF Files

2008-10-16 Thread scott
Paul Craig wrote: > > Multiple Flash Authoring Heap Overflows - Malformed SWF Files > > Vendor Website: http://www.adobe.com > > Affected Versions: > Adobe Flash Professional CS3/Flash MX2004 > > Vendor Notified. July 2008 > P

Re: [Full-disclosure] security industry software license

2008-10-16 Thread scott
> I hope you choke on your anti-depressants and drown in your own > vomit you fucking cunt. That was just rude. Netdev is a delusional paranoiac with a need to be accepted for what he's worth. Oh yeah, I forgot. I filtered him out a long time ago. I still love the Doonesbury-esque quality of his

Re: [Full-disclosure] security industry software license

2008-10-16 Thread n3td3v
well 'netdev' is supposed to be a bit of fun, there is no need for this kind of 'serious' response all the time. ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http

[Full-disclosure] SEC Consult SA-20081016-0 :: Remote command execution in Instant Expert Analysis

2008-10-16 Thread Bernhard Mueller
SEC Consult Security Advisory < 20081016-0 > title: Remote command execution in Instant Expert Analysis signed Java applet and signed ActiveX control p

Re: [Full-disclosure] security industry software license

2008-10-16 Thread Richard A Nelson
On Thu, 16 Oct 2008, n3td3v wrote: > an *evil deeds* website and no privacy policy? c'mon, who are you > trying to kid? oh yeah, the kiddies... And apparently, one of them has fallen prey - hook, line, and sinker You've been on about this for awhile now, please don't further flog the carcass --

[Full-disclosure] rPSA-2008-0294-1 postfix

2008-10-16 Thread rPath Update Announcements
rPath Security Advisory: 2008-0294-1 Published: 2008-10-16 Products: rPath Linux 1 rPath Linux 2 Rating: Minor Exposure Level Classification: Local User Deterministic Privilege Escalation Updated Versions: [EMAIL PROTECTED]:1/2.2.7-2.2-1 [EMAIL PROTECTED]:2/2.4.8-0.1-1 rPath I

[Full-disclosure] rPSA-2008-0295-1 rails

2008-10-16 Thread rPath Update Announcements
rPath Security Advisory: 2008-0295-1 Published: 2008-10-16 Products: rPath Appliance Platform Linux Service 1 rPath Appliance Platform Linux Service 2 rPath Linux 1 rPath Linux 2 Rating: Major Exposure Level Classification: Remote User Deterministic Vulnerability Updated Versio

[Full-disclosure] [ MDVSA-2008:214 ] mon

2008-10-16 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:214 http://www.mandriva.com/security/

Re: [Full-disclosure] security industry software license

2008-10-16 Thread n3td3v
the double edged sword of metasploit continues. while we acknowledge its a double edged sword, does that mean we don't need to monitor the bad edge of that sword? that is the point n3td3v has been making. and in a news report today by cnet news, they acknowledge: On Thursday, new code was put o

Re: [Full-disclosure] IBM DB2

2008-10-16 Thread Jeptha . Gibbs
Dennis, This address should do it for you. [EMAIL PROTECTED] Regards, P Please consider the environment before printing this e-mail Jeptha M. Gibbs V JPMorgan Chase | Investment Bank | Information Risk Manageme