[Full-disclosure] [USN-803-1] dhcp vulnerability

2009-07-14 Thread Jamie Strandboge
=== Ubuntu Security Notice USN-803-1 July 14, 2009 dhcp3 vulnerability CVE-2009-0692 === A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS Ubuntu 8.04

[Full-disclosure] [SECURITY] [DSA 1833-1] New dhcp3 packages fix arbitrary code execution

2009-07-14 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1833-1 secur...@debian.org http://www.debian.org/security/ Florian Weimer July 14, 2009

[Full-disclosure] [ GLSA 200907-12 ] ISC DHCP: dhcpclient Remote execution of arbitrary code

2009-07-14 Thread Alex Legler
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200907-12 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - - -

[Full-disclosure] [SA35798] Firefox 3.5 memory corruption vulnerability

2009-07-14 Thread mrx
Impact: Systems access Where:From remote Status:Unpatched http://secunia.com/advisories/35798/ No CVE references *Description*: SBerry has discovered a vulnerability in Mozilla Firefox, which can be exploited by malicious people to compromise a user's system. The vulnerability is ca

[Full-disclosure] Secunia Research: Novell eDirectory iMonitor "Accept-Language" Buffer Overflow

2009-07-14 Thread Secunia Research
== Secunia Research 14/07/2009 - Novell eDirectory iMonitor "Accept-Language" Buffer Overflow - == Table of Contents Affected Softwar

Re: [Full-disclosure] AntiSec <3's nginx

2009-07-14 Thread mrx
Linval Thompson wrote: > On Tue, Jul 14, 2009 at 12:50 AM, opt opt wrote: > > >> On Mon, Jul 13, 2009 at 1:21 PM, mrx wrote: >> >>> ii) One where there is no privacy and every action is logged tracked and >>> traced by governments.(And we all know that governments have only the >>> interes

[Full-disclosure] [SECURITY] [DSA 1829-2] New sork-passwd-h3 packages fix regression

2009-07-14 Thread Steffen Joeris
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1829-2 secur...@debian.org http://www.debian.org/security/ Steffen Joeris July 14, 2009

Re: [Full-disclosure] AntiSec <3's nginx

2009-07-14 Thread Linval Thompson
On Tue, Jul 14, 2009 at 12:50 AM, opt opt wrote: > On Mon, Jul 13, 2009 at 1:21 PM, mrx wrote: > > ii) One where there is no privacy and every action is logged tracked and > > traced by governments.(And we all know that governments have only the > > interests of the people at heart) > > Why assum

[Full-disclosure] anti-sec pwnz windows mobile

2009-07-14 Thread antisec
If you have a windows mobile device, it may be bugged. The government is listening, and we are too. Blackberries.. poof. Encryption ciphers.. so last halloween. We dig and dig until we strike gold. And here it is.. the one and only... http://ftp.mozilla.org/pub/mozilla.org/mobile/fennec-1.0a1