Member Login

Login
No account yet? Register
 

Search

Tell your friends about the Arcane Security Portal.

Search The Web


Who's Online

[Full Disclosure]
Full Disclosure (fulldisclosure) Mailing List
An unmoderated high-traffic forum for disclosure of security information. Fresh vulnerabilities sometimes hit this list many hours before they pass through the Bugtraq moderation queue. The relaxed atmosphere of this quirky list provides some comic relief and certain industry gossip. Unfortunately 80% of the posts are worthless drivel, so finding the gems takes patience.

  • [ GLSA 200809-05 ] Courier Authentication Library: SQL injection vulnerability
    Posted by Pierre-Yves Rofes on Sep 05

    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    Gentoo Linux Security Advisory GLSA 200809-05
    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    ...

  • Re: Google Chrome Browser Vulnerability
    Posted by n3td3v on Sep 5

    On Fri, Sep 5, 2008 at 8:10 PM, hannibal <hannibal_at_switched.com> wrote:
    > We all know that Evron is a moronic jew, who cares?
    >

    How should the community deal with Gadi Evron emails? Should we be
    shooting for a complete ban of cyber politics as well as normal
    politics which...

  • Re: Google Chrome Browser Vulnerability
    Posted by M.B.Jr. on Sep 5

    Well, "things" keep happening to Safari as a matter of fact.

    On 9/3/08, James Matthews <nytrokiss_at_gmail.com> wrote:
    > The same thing happened to safari when it came out on windows.
    >
    >
    > On Tue, Sep 2, 2008 at 5:13 PM, Larry Seltzer...

  • Re: Google Chrome Browser Vulnerability
    Posted by hannibal on Sep 05

    n3td3v wrote:
    > On Thu, Sep 4, 2008 at 5:46 PM, Chris Pritchard
    > <mailinglist_at_brainiacghost.co.uk> wrote:
    >
    >> I don't think it's "your" list, and even if it was, you didn't have to be so
    >> rude about it
    >>
    >>
    >
    >...

  • Re: XCon 2008 Call for Paper
    Posted by cocoruder. on Sep 5

    cool man! cool the Chinese guys!
    welcome to my blog:http://ruder.cdut.net

    Date: Fri, 5 Sep 2008 15:45:01 +0800From: smaillist_at_gmail.comTo: bugtraq_at_securityfocus.com; full-disclosure_at_lists.grok.org.ukSubject: [Full-disclosure] XCon 2008 Call for Paper
    XCon 2008 Call for...

  • [PLSA 2008-36] Ffmpeg: Multiple vulnerabilities
    Posted by Pardus Security Team on Sep 05

    ------------------------------------------------------------------------
    Pardus Linux Security Advisory 2008-36 security_at_pardus.org.tr
    ------------------------------------------------------------------------
           Date: 2008-09-05
    ...

  • Google Chrome 0.2.149.27 SaveAs Function Buffer OverflowVulnerability
    Posted by SVRT on Sep 05

    We (SVRT-Bkis) have just discovered vulnerability in Google Chrome
    0.2.149.27. This is a Critical Buffer Overflow Vulnerability permiting
    hacker to perform a remote attack and take complete control of the affected
    system.

    We have submitted this Vulnerability to Google. They confirmed and...

  • rPSA-2008-0268-1 libtiff
    Posted by rPath Update Announcements on Sep 04

    rPath Security Advisory: 2008-0268-1
    Published: 2008-09-04
    Products:
        rPath Linux 1
        rPath Linux 2

    Rating: Major
    Exposure Level Classification:
        Indirect User Deterministic Unauthorized Access
    Updated Versions:
    ...

  • Re: XCon 2008 Call for Paper
    Posted by Sowhat on Sep 5

    If you have any questions, comments, please shoot against Casper ;)
    Though I am happy to forward it.

    On Fri, Sep 5, 2008 at 4:40 PM, Sowhat <smaillist_at_gmail.com> wrote:
    > Got couple of emails with comments (language mistakes) and questions,
    > Thanks guys!
    >
    >...

  • Re: XCon 2008 Call for Paper
    Posted by Sowhat on Sep 5

    Got couple of emails with comments (language mistakes) and questions,
    Thanks guys!

    Actually XCon is held by XFOCUS guys (Casper and others), they wrote
    it up and I was just helping to post the CFP.

    If you have any questions regarding the schedule, the conferences,
    the hotel, etc.

    Welcome...

  • XCon 2008 Call for Paper
    Posted by Sowhat on Sep 5

    XCon 2008 Call for Paper

          Nov. 18th – 19th, 2008, Beijing, PRC (http://xcon.xfocus.net)

          XCon is wholeheartedly expecting papers from those who are passionate
    about information security technique and their participation and...

  • Re: Google Chrome Browser Vulnerability
    Posted by n3td3v on Sep 5

    On Thu, Sep 4, 2008 at 5:46 PM, Chris Pritchard
    <mailinglist_at_brainiacghost.co.uk> wrote:
    > I don't think it's "your" list, and even if it was, you didn't have to be so
    > rude about it
    >

    Its Gadi Evron's list because Mossad told him to make it so. Who's
    really...

  • Re: Hardcoded Keys
    Posted by Gary E. Miller on Sep 4

    Yo All!

    > I believe it almost never happens. As I understand the card association
    > rules, the merchant has to hang on to the data for refund purposes.

    Nope, all you need to generate a refund is the original transaction ID. At
    least with the processors I use.

    You can get the PCI...

  • Re: Google Chrome Browser Vulnerability
    Posted by The Mad Hatter on Sep 4

    On Thursday 04 September 2008 13:46:33 Chris Pritchard wrote:
    > I don't think it's "your" list, and even if it was, you didn't have to be
    > so rude about it
    >

    I -- as well as many others in the list I'm sure -- have given up on this
    thread. As usual, its popularity is...

  • [ MDVSA-2008:186 ] python
    Posted by security_at_mandriva.com on Sep 04

     _______________________________________________________________________

     Mandriva Linux Security Advisory MDVSA-2008:186
     http://www.mandriva.com/security/
     _______________________________________________________________________

     Package :...