The bugtraq list archive for Jan-06
- Feb 01, 2006
- Jan 31, 2006
- [SECURITY] [DSA 960-2] New libmail-audit-perl packages fix insecure temporary file use, Martin Schulze
- Xmame 0.102 local vulnerability proof-of-concept, Rafael San Miguel Carrasco
- Nmap 4.00 Released, Fyodor
- FarsiNews 2.1 PHP Remote File Inclusion, h e
- [SECURITY] [DSA 960-1] New libmail-audit-perl packages fix insecure temporary file use, Martin Schulze
- [SECURITY] [DSA 957-2] New ImageMagick packages fix arbitrary command execution, Martin Schulze
- MyCO multiple vulnerabilities, revnic
- Proof of concept for CommuniGate Pro Server vulnerability, Evgeny Legerov
- Re: EasyCMS vulnerable to XSS injection., kim
- Re: Re: Winamp 5.12 - 0day exploit - code execution through playlist, Juha-Matti Laurio
- Cerberus Helpdesk vulnerable to XSS, preben
- BrowserCRM vulnerable for XSS, preben
- Etomite followup information, security curmudgeon
- [ GLSA 200601-17 ] Xpdf, Poppler, GPdf, libextractor, pdftohtml: Heap overflows, Sune Kloppenborg Jeppesen
- [ GLSA 200601-16 ] MyDNS: Denial of Service, Sune Kloppenborg Jeppesen
- [ MDKSA-2006:027 ] - Updated gzip packages fix zgrep vulnerabilities, security
- Re: CME-24 (BlackWorm) Users' FAQ, Gadi Evron
- New worm crawling trough blogs?!, blog . worm
- Jan 30, 2006
- Re: Winamp 5.12 - 0day exploit - code execution through playlist, Chris Wysopal
- [ MDKSA-2006:026 ] - Updated bzip2 packages fix bzgrep vulnerabilities, security
- Etomite CMS "Backdoored", [at]
- CME-24 (BlackWorm) Users' FAQ, Gadi Evron
- [SECURITY] [DSA 959-1] New unalz packages fix arbitrary code execution, Martin Schulze
- Re: Arescom NetDSL-1000 DoS atack source, Pim van Riezen
- MyBB 1.2 Local File Incusion, o . y . 6
- XSS flaw in MG2 Image Gallery (v.0.5.1), preben
- BlackWorm: statistics and numbers, Gadi Evron
- gnome evolution mail client inline text file DoS issue, Mike Davis
- Re: Airscanner Mobile Security Advisory: Remote Hard Reset Data Wipe and DoS of Pocket Controller v5.0 (#AS05080401), orambaldini
- Re: [security] What A Click! [Internet Explorer], yossarian
- Nuked-klaN Cross-Site Scripting Vulnerability, [at]
- MyBB 1.2 usercp2.php [ $url ] CrossSiteScripting ( XSS ), o . y . 6
- sPaiz-Nuke Cross-Site Scripting Vulnerability, [at]
- EasyCMS vulnerable to XSS injection., preben
- Winamp 5.12 - 0day exploit - code execution through playlist, Process
- Arescom NetDSL-1000 DoS atack source, framirez
- Re: [Full-disclosure] [ GLSA 200601-15 ] Paros: Default administrator password, Yvan Boily
- RE: Cross Site Cooking, Michal Zalewski
- [xpl#2] MiniNuke 1.8.2 - change member's passwrod < Perl >, hessam
- [SECURITY] [DSA 951-2] New trac packages fix SQL injection and cross-site scripting, Martin Schulze
- TSLSA-2006-0004 - multi, Trustix Security Advisor
- [ GLSA 200601-15 ] Paros: Default administrator password, Sune Kloppenborg Jeppesen
- Re: BlackWorm naming confusing [CME entry now available], Jose Nazario
- UebiMiau Webmail System Security Vulnerability, M.Neset KABAKLI
- [ GLSA 200601-14 ] LibAST: Privilege escalation, Sune Kloppenborg Jeppesen
- Re: Re: IndonesiaHack Advisory HTML injection in PHP Fusebox, pr1nce_empire
- Cross Site Cooking, Michal Zalewski
- Re: MySQL 5.0 information leak?, Duncan Simpson
- zbattle.net, c_lispfedora
- Jan 29, 2006
- Jan 28, 2006
- Jan 27, 2006
- [ MDKSA-2006:024 ] - Updated ImageMagick packages fix vulnerabilities, security
- Re: [security] What A Click! [Internet Explorer], Lance James
- Shareaza P2P Remote Vulnerability, Ryan Smith
- CAID 33778 - CA iGateway Content-Length Buffer Overflow Vulnerability [v1.1], Williams, James K
- Re: [security] What A Click! [Internet Explorer], yossarian
- [ MDKSA-2006:025 ] - Updated net-snmp packages fix vulnerabilities, security
- [SECURITY] [DSA 958-1] New drupal packages fix several vulnerabilities, Martin Schulze
- [Argeniss] Oracle Database Buffer overflows vulnerabilities in public procedures of XDB.DBMS_XMLSCHEMA{_INT}, Cesar
- [ MDKSA-2006:023 ] - Updated perl-Net_SSLeay packages fix vulnerability, security
- hello, code . shell
- [SECURITY] [DSA 952-1] New libapache-auth-ldap packages fix arbitrary code execution, Martin Schulze