Re: [Full-Disclosure] Please help me update my address book on Ringo

2005-02-24 Thread Valdis . Kletnieks
On Thu, 24 Feb 2005 00:51:00 CST, J.A. Terranson said: On Thu, 23 Feb 2005, Ahmad Naazir wrote: http://ringo.com/i?uid=Jg8rPqPWwgOT2n9Y; I'm using a new, free service where I put in my contact info for you, you put in your contact info for me, and everyone stays up to date automatically.

Re: [Full-Disclosure] Please can some one help out.

2005-02-24 Thread Michael Simpson
this is really offtopic but quite intriguing if these are coathangers then the bricks are really small also the perspective seems wrong re the wall on the left the central structure looks imposed on the room On Tue, 22 Feb 2005 16:54:27 -0800 (PST), Tanvir [EMAIL PROTECTED] wrote: Hi Can

Re: [Full-Disclosure] Please help me update my address book on Ringo

2005-02-24 Thread Duncan Hill
On Thursday 24 February 2005 06:10, Ahmad Naazir might have typed: Hi I'm updating my address book. Please click on the link below and enter your contact info for me: http://ringo.com/i?uid=Jg8rPqPWwgOT2n9Y; Odd.. one of our customers has been getting this but with bebo.com as the URL.

Re: [Full-Disclosure] smtpsvc and undocumented registry values

2005-02-24 Thread Thierry Haven
Thanks for your answers... but I'm sorry, my question was about mail -RELAYING- through SMTP. By modyfing the banner with Metabase Explorer (as you said, or as established on safehack.com) it is only possible to hide the current version when connecting to the server thanks to telnet / port 25.

[Full-Disclosure] iDEFENSE Security Advisory 02.23.05: Sun Solaris kcms_configure Arbitrary File Corruption Vulnerability

2005-02-24 Thread idlabs-advisories
Sun Solaris kcms_configure Arbitrary File Corruption Vulnerability iDEFENSE Security Advisory 02.23.05 www.idefense.com/application/poi/display?id=206type=vulnerabilities February 23, 2005 I. BACKGROUND The kcms_configure utility is part of the Kodak Color Management System (KCMS) package that

[Full-Disclosure] Google Search and Gmail Correlation

2005-02-24 Thread Cody Hatch
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Google Search and Gmail Correlation - Full Disclosure February 23, 2005 I. INTRODUCTION Google appears to be correlating searches on Google's site with Gmail accounts, potentially creating privacy concerns for Gmail users. II. DESCRIPTION Perhaps

[Full-Disclosure] Re: Incorrect Classification of iDownload's Product as Spyware...

2005-02-24 Thread Dave C
I frequent and read CC often and couldn't agree more. ISearch gets it's hooks so far into a system that it can only be classed as the garbage spyware program that it is(IMHO). Goos job and good luck! Paul Laudanski wrote: In a letter received by CastleCops from a law firm representing

[Full-Disclosure] Cyclades AlterPath Manager Vulnerabilities

2005-02-24 Thread Sullo
The Cyclades AlterPath Manager (APM) Console Server is sold to perform secure remote management of IT assets from anywhere in the world. It provides individual user logins, and allows the APM administrator to restrict users to specific consoles. However, a basic review of the APM management web

[Full-Disclosure] [TURBOLINUX SECURITY INFO] 24/Feb/2005

2005-02-24 Thread Turbolinux
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 This is an announcement only email list for the x86 architecture. Turbolinux Security Announcement 24/Feb/2005 The following

[Full-Disclosure] Exploiting apache

2005-02-24 Thread International-Asso
Hello everyone, Last time I have checked my apache log files, I made a funny discovery. There was the following logfile entry: ### 84.XX.XX.159 - - [31/Jan/2005:22:46:38 +] SEARCH /\x90\x02\xb1\x02\xb1\x02\xb1\x02\xb1\[...]

Re: [Full-Disclosure] Exploiting apache

2005-02-24 Thread Ron
That's an exploit for some IIS vulnerability. A google search will turn it up immediately. [EMAIL PROTECTED] wrote: Hello everyone, Last time I have checked my apache log files, I made a funny discovery. There was the following logfile entry: ###

[Full-Disclosure] Google as Application FireWall

2005-02-24 Thread Andrey Bayora
Hi list, As you know, Google blocks some keywords in the search query like viewtopic.php to stop worms attacking vulnerable sites. Debasis Mohanty in his post (http://seclists.org/lists/fulldisclosure/2005/Feb/0534.html) explained how this block could be bypassed, by searching for: view + topic +

Re: [Full-Disclosure] Please help me update my address book on Ringo

2005-02-24 Thread Micheal Espinola Jr
This is most likely an address retreiving spam. On Thu, 24 Feb 2005 00:51:00 -0600 (CST), J.A. Terranson [EMAIL PROTECTED] wrote: On Thu, 23 Feb 2005, Ahmad Naazir wrote: Hi I'm updating my address book. Please click on the link below and enter your contact info for me:

[Full-Disclosure] Cisco Security Advisory: ACNS Denial of Service and Default Admin Password Vulnerabilities

2005-02-24 Thread Cisco Systems Product Security Incident Response Team
at http://www.cisco.com/warp/public/707/cisco-sa-20050224-acnsdos.shtml. Affected Products = Vulnerable Products - - +-+ | DDTS Bug ID |Vulnerable ACNS | ||Versions

Re: [Full-Disclosure] Exploiting apache

2005-02-24 Thread 404
On Thu, 2005-02-24 at 09:37, [EMAIL PROTECTED] wrote: Hello everyone, Last time I have checked my apache log files, I made a funny discovery. There was the following logfile entry: ### 84.XX.XX.159 - - [31/Jan/2005:22:46:38 +] SEARCH

Re: [Full-Disclosure] IDS Signatures

2005-02-24 Thread John Galt
I am also in the process of implementing a NIDS in Linux, only I am attempting to make it proactive, more like an IPS. As far as your work is concerned, do take a look at snort. Installing it is a breeze ( atleast on FC2 and before that i was). It pushes packets onto mysql, so once installed, all

Re: [Full-Disclosure] Awake a modem with AT commands

2005-02-24 Thread John Galt
i am not sure if this is what you want to know, but waking up a PC by sending a ring to its modem is a feature available in most BIOS options, you'll probably just have to check that. And once the computer switches on (say Windows 2000), you can have some kind of a dial in server on it. regards

[Full-Disclosure] In-game cl_guid crash in Soldier of Fortune II 1.03

2005-02-24 Thread Luigi Auriemma
### Luigi Auriemma Application: Soldier of Fortune II http://sof2.ravensoft.com Versions: = 1.03 gold Platforms:Windows, Linux and MacOS Bug: crash caused by invalid

Re: [Full-Disclosure] IDS Signatures

2005-02-24 Thread Frank Knobbe
On Thu, 2005-02-24 at 22:33 +0530, John Galt wrote: I am also in the process of implementing a NIDS in Linux, only I am attempting to make it proactive, more like an IPS. As far as your work is concerned, do take a look at snort. [...] With regard to my task of making the system proactive, can

Re: [Full-Disclosure] Exploiting apache

2005-02-24 Thread devis
404 wrote: On Thu, 2005-02-24 at 09:37, [EMAIL PROTECTED] wrote: Hello everyone, Last time I have checked my apache log files, I made a funny discovery. There was the following logfile entry: ### 84.XX.XX.159 - - [31/Jan/2005:22:46:38 +] SEARCH

[Full-Disclosure] MDKSA-2005:046 - Updated uim packages fix vulnerability

2005-02-24 Thread Mandrakelinux Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandrakelinux Security Update Advisory ___ Package name: uim Advisory ID:

[Full-Disclosure] MDKSA-2005:047 - Updated squid packages fix vulnerability

2005-02-24 Thread Mandrakelinux Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandrakelinux Security Update Advisory ___ Package name: squid Advisory ID:

[Full-Disclosure] RE: Incorrect Classification of iDownload's Product as Spyware...

2005-02-24 Thread Roger A. Grimes
I've got a solution for this litigation problem for the anti-spyware companies. Create a new classification called Recognized Software. In the description, tell end users that Recognize software contains both wanted and unwanted software. The software is in this category because many users

[Full-Disclosure] GAIM exploit

2005-02-24 Thread Randall Perry
Platform: Windows (tested only on XP and 2000, might impact others) Application: GAIM v1.1.3 Synopsis: Cause remote crash of GAIM client. Scenario: By sending a file to another GAIM user, you can cause their GAIM client to crash and completely close GAIM down. Simply send a file to someone with

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread Eric Paynter
On Wed, February 23, 2005 1:08 pm, KF (lists) said: Recently I have noticed that after shutting down my machine or rebooting my X-windows will briefly flash an image of whatever I was doing when I rebooted the machine or logged out. As an example if I was browsing porn at night in mozilla

[Full-Disclosure] phpWebSite-0.10.0_exploit

2005-02-24 Thread tjomka
phpWebSite-0.10.0_exploit nst.gif.php Description: Binary data ....8.ooo .o..88.88888..888..88 .88.888o88..888oo.888 .88....888888 o88o88.o88888o888o Network security team

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread Eric Windisch
On Thu, 2005-02-24 at 14:35 -0800, Eric Paynter wrote: On Wed, February 23, 2005 1:08 pm, KF (lists) said: Recently I have noticed that after shutting down my machine or rebooting my X-windows will briefly flash an image of whatever I was doing when I rebooted the machine or logged out.

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread Rodrigo Barbosa
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Thu, Feb 24, 2005 at 06:35:00PM -0500, Eric Windisch wrote: On Thu, 2005-02-24 at 14:35 -0800, Eric Paynter wrote: On Wed, February 23, 2005 1:08 pm, KF (lists) said: Recently I have noticed that after shutting down my machine or rebooting

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread KF (Lists)
All kidding aside, this seems to be a real security issue. Your system shouldn't be showing unauthorized users what you were doing. It should properly flush the memory. I do have a movie clip showing a session where root was viewing the /etc/shadow file. The shadow is displayed on the screen for

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread KF (Lists)
That is a definate common thread on my end. All three of the machines in quesion have the following in the X config. Driver vesa -KF Rodrigo Barbosa wrote: Looks like related to the VESA buffer, since I only saw it happen when using the VESA driver.

Re: [Full-Disclosure] Exploiting apache

2005-02-24 Thread Nick FitzGerald
404 to [EMAIL PROTECTED]: Last time I have checked my apache log files, I made a funny discovery. There was the following logfile entry: ### 84.XX.XX.159 - - [31/Jan/2005:22:46:38 +] SEARCH

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread Rodrigo Barbosa
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Thu, Feb 24, 2005 at 08:23:28PM -0500, KF (Lists) wrote: Does a power off flush it? I have power cycled at least one of the machines and let it sit for several minutes. Also as I stated before sometimes when I get up in the morning I catch

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread Rodrigo Barbosa
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 You might try contacting Paulo Cezar, the original author of the driver. Last time I talked to him, his e-mail was [EMAIL PROTECTED] Not sure if he is still working there, tho. He might be able to shred some light on this issue. []s On Thu, Feb

[Full-Disclosure] [FLSA-2005:2336] Updated kernel packages fix security issues

2005-02-24 Thread Marc Deslauriers
- Fedora Legacy Update Advisory Synopsis: Updated kernel packages fix security issues Advisory ID: FLSA:2336 Issue date:2005-02-24 Product: Red Hat Linux, Fedora Core Keywords:

Re: [Full-Disclosure] Xfree86 video buffering?

2005-02-24 Thread Valdis . Kletnieks
On Thu, 24 Feb 2005 14:35:27 PST, Eric Paynter said: All kidding aside, this seems to be a real security issue. Your system shouldn't be showing unauthorized users what you were doing. It should properly flush the memory. Does a power off flush it? I've seen this behavior on a Dell