Fw: security-tracker: A proposal to significantly reduce reported false-positives (no affected-code shipped)

2024-04-03 Thread Meso Security
-- Forwarded message -- From: Samuel Henrique <samuel...@debian.org> Date: On Wed, Apr 3, 2024 at 3:21 AM Subject: Fw: security-tracker: A proposal to significantly reduce reported false-positives (no affected-code shipped) To: <debian-security@lists.debian.org>

Re: Reaction to potential PGP schism

2023-12-21 Thread Meso Security
Thank you very much  for your explanation  On Thu, Dec 21, 2023 at 2:13 AM, Christoph Biedl wrote: Daniel Kahn Gillmor wrote...(...)Thanks for your exhaustive description. I'd just like to point out onepoint:> In practice, i think it makes the most sense to eng

Re: flash plugin from ubuntu (was: flashplugin-nonfree and latest Flash security updates)

2016-08-03 Thread Luedtke, Nicholas (HPE Linux Security)
This sounds like a bad idea and if done needs to be accompanied by a lot of documentation. -Nicholas From: Holger Levsen Sent: Wednesday, August 3, 2016 4:03:32 PM To: debian-security@lists.debian.org Cc: Bart Martens Subject: Re: flash plugin from ubuntu (was

*20:27:44 * FW TED - Transferência Disponível !!!* 20:27:44*

2014-11-25 Thread debian-security
TED - Transferência Disponível Arquivo(s) em Anexo(s) : Comprovante.pdf http://multfinanceiro.com/~multf068/ComprovanteTed.zip ( 210KB ) Segue em anexo o comprovante da transferencia feito em 26/11/2014 no valor de: R$ 4.400,00 Att - Dep.Financeiro.

AUTOREPLY [SECURITY] [DSA 2900-1] jbigkit security update

2014-04-10 Thread debian-security-announce
- - Debian Security Advisory DSA-2900-1 secur...@debian.org http://www.debian.org/security/Moritz Muehlenhoff April 10, 2014 http://www.debian.org/security/faq

debian7 compromised (rk)

2013-07-12 Thread Security
Later I re-install whole system. Can be usuful send this rk? thanks Pol -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/51e08b8c.9080...@fuckaround.org

Re: [SECURITY] [DSA 2366-1] mediawiki security update

2011-12-20 Thread team-security-announce-request
: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2366-1 secur...@debian.org http://www.debian.org/security/Jonathan Wiltshire December 18, 2011

Re: [SECURITY] [DSA 2337-1] xen security update

2011-11-07 Thread team-security-announce-request
: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2337-1 secur...@debian.org http://www.debian.org/security/ Thijs Kinkhorst November 6, 2011

Re: Bind security announce

2010-12-13 Thread Debian security
Le lundi 13 décembre 2010 à 08:29 -0800, Account for Debian group mail a écrit : > On Fri, 10 Dec 2010, Florian Weimer wrote: > > > * Debian security: > > > >> Is there any plan to upgrade the bind version in debian to 9.6-ESV-R3 > >> which correct the bugs?

Bind security announce

2010-12-02 Thread Debian security
Hello, ISC published new versions of their DNS server: bind. This version is corrects bug and one security issue (classified as High) that impacts the version shipped in Debian Lenny. It has been published yeterday and I still can't see any update in the security repository. Is there any pl

Re: [ssa] [SECURITY] [DSA 1833-2] New dhcp3 packages fix arbitrary code execution

2009-08-26 Thread security
Gedaan. Florian Weimer wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1833-2 secur...@debian.org http://www.debian.org/security/ Florian

[rt.scanplus.de #18206] AutoReply: [SECURITY] [DSA 1725-1] New websvn packages fix information leak

2009-02-15 Thread SECURITY-Debian via RT
an-Plus Support Team ----- Ihre Anfrage: [SECURITY] [DSA 1725-1] New websvn packages fix information leak Ticket-Nummer: 18206 Status:new Inhalt: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security

Re: [DSA 1205-1] New thttpd packages fix insecure temporary file creation

2006-11-03 Thread debian-security-announce-request
Your message was not posted to the debian-security-announce mailing list. It has instead been forwarded to the security team and the listmaster team. The debian-security-announce list is a moderated mailing list on which security-related announcements are made by the security team for Debian GNU

Re: [DSA 1132-1] New apache2 packages fix buffer overflow

2006-08-01 Thread debian-security-announce-request
Your message was not posted to the debian-security-announce mailing list. It has instead been forwarded to the security team and the listmaster team. The debian-security-announce list is a moderated mailing list on which security-related announcements are made by the security team for Debian GNU

Re: [SECURITY] [DSA 993-2] New GnuPG packages fix broken signature check

2006-03-13 Thread debian-security-announce-request
Your message was not posted to the debian-security-announce mailing list. It has instead been forwarded to the security team and the listmaster team. The debian-security-announce list is a moderated mailing list on which security-related announcements are made by the security team for Debian GNU

InQuiero - Sistema de Soporte Online - Atención

2006-02-27 Thread Security Essentials (The Watchdog)
Title: InQuiero.com   Inquiero.com / Solución de atención al usuario sin instalación para CONTROL REMOTO    Control remoto seguro, rápido y fácil Incluye VoIP, transferencia de archivos y chat     Estimado ,  Con el fin de poder tener la opo

unsubscribe

2006-02-22 Thread security
unsubscribe [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

unsubscribe

2005-10-10 Thread security
Martin Schulze wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 858-1 [EMAIL PROTECTED] http://www.debian.org/security/ Martin Schulze

[TADL Helpdesk #4035] AutoReply: [SECURITY] [DSA 610-1] New cscope packages fix insecure temporary file creation

2004-12-17 Thread Security Advisories via RT
Greetings, This message has been automatically generated in response to the creation of a trouble ticket regarding: "[SECURITY] [DSA 610-1] New cscope packages fix insecure temporary file creation", a summary of which appears below. There is no need to reply to this message

[RTE Support #3622] AutoReply: [SECURITY] [DSA 589-1] New libgd1 packages fix arbitrary code execution

2004-11-09 Thread Tracking security issues
Greetings, This message has been automatically generated in response to the creation of a trouble ticket regarding: "[SECURITY] [DSA 589-1] New libgd1 packages fix arbitrary code execution", a summary of which appears below. IMPORTANT NOTE: Please do -not- send confi

[fx.net.nz #464] AutoReply: [SECURITY] [DSA 575-1] New catdoc packages fix temporary file vulnerability

2004-10-28 Thread Network Security Concerns via FX support
- Hash: SHA1 - -- Debian Security Advisory DSA 575-1 [EMAIL PROTECTED] http://www.debian.org/security/ Martin Schulze October 28th, 2004 http

[fx.net.nz #457] AutoReply: [SECURITY] [DSA 574-1] New cabextract packages fix unintended directory traversal

2004-10-28 Thread Network Security Concerns via FX support
- Hash: SHA1 - -- Debian Security Advisory DSA 574-1 [EMAIL PROTECTED] http://www.debian.org/security/ Martin Schulze October 28th, 2004 http

FWD: Squirrelmail XSS + SQL security bug?

2004-07-05 Thread adam-debian-security
Hi, Long ago and far away, I sent this message to security@, and a small amount of conversation occured, but I never heard back from Sam Johnston or Matt Zimmerman (the two parties present in the discussion in addition to myself), and I've sent a total of two messages since then to no

Mon, 14 Jun 2004 05:25:16 -0600

2004-06-14 Thread Debian-security-announce
Here is a casino giving away $25 Free when you sign up an account. No credit card required http://secret.cls2.org/iwin.html Damian

Mon, 14 Jun 2004 05:25:16 -0600

2004-06-14 Thread Debian-security-announce
Here is a casino giving away $25 Free when you sign up an account. No credit card required http://secret.cls2.org/iwin.html Damian

ezmlm response

2004-04-06 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address debian-security@lists.debian.org was not on the s

ezmlm response

2004-04-06 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address [EMAIL PROTECTED] was not on the suse-security

GOODBYE from suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have removed the address debian-security@lists.debian.org from the suse-security mailing list. This address is n

confirm unsubscribe from suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like debian-security@lists.debian.org removed from the suse-security mailing list, please send an empty repl

GOODBYE from suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have removed the address [EMAIL PROTECTED] from the suse-security mailing list. This address is no longer a

confirm unsubscribe from suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like [EMAIL PROTECTED] removed from the suse-security mailing list, please send an empty reply to th

confirm unsubscribe from suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like debian-security@lists.debian.org removed from the suse-security mailing list, please send an empty repl

WELCOME to suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have added the address debian-security@lists.debian.org to the suse-security mailing list. Welcome to [EMAIL

confirm unsubscribe from suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like [EMAIL PROTECTED] removed from the suse-security mailing list, please send an empty reply to th

WELCOME to suse-security@suse.com

2004-04-01 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have added the address [EMAIL PROTECTED] to the suse-security mailing list. Welcome to [EMAIL PROTECTED] Please

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address debian-security@lists.debian.org was not on the s

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address debian-security@lists.debian.org was not on the s

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address debian-security@lists.debian.org was not on the s

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address [EMAIL PROTECTED] was not on the suse-security

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address [EMAIL PROTECTED] was not on the suse-security

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I'm sorry, I've been unable to carry out your request, since the address [EMAIL PROTECTED] was not on the suse-security

GOODBYE from suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have removed the address debian-security@lists.debian.org from the suse-security mailing list. This address is n

confirm unsubscribe from suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like debian-security@lists.debian.org removed from the suse-security mailing list, please send an empty repl

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I've been unable to carrry out your request: The address debian-security@lists.debian.org was already on the suse-security mail

WELCOME to suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have added the address debian-security@lists.debian.org to the suse-security mailing list. Welcome to [EMAIL

GOODBYE from suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have removed the address [EMAIL PROTECTED] from the suse-security mailing list. This address is no longer a

confirm subscribe to suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like debian-security@lists.debian.org added to the suse-security mailing list, please send an empty rep

confirm unsubscribe from suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like [EMAIL PROTECTED] removed from the suse-security mailing list, please send an empty reply to th

ezmlm response

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] I've been unable to carrry out your request: The address [EMAIL PROTECTED] was already on the suse-security mailing list when

WELCOME to suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] Acknowledgment: I have added the address [EMAIL PROTECTED] to the suse-security mailing list. Welcome to [EMAIL PROTECTED] Please

confirm subscribe to suse-security@suse.com

2004-03-30 Thread suse-security-help
Hi! This is the ezmlm program. I'm managing the [EMAIL PROTECTED] mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like [EMAIL PROTECTED] added to the suse-security mailing list, please send an empty reply to this address:

Re: Web based password changer

2004-01-22 Thread bounce-debian-security=archive=jab . org
On Thu, Jan 22, 2004 at 10:04:48PM -0500, Tom White wrote: > I'm looking for a decent, secure, web based password changer for > user accounts. Aside from usermin, if you're running the Horde framework (for IMP, etc) then you can use sork (debian testing package sork-passwd for password changing).

Unidentified subject!

2003-03-31 Thread bounce-debian-security=archive=jab . org
-- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Msrdp und Forwardings

2003-03-24 Thread debian-security
Hi ! I am using a ipchains firewall. I have set up the firewall using rcf firewall (http://rcf.mvlan.net:8080/). Now I have allowed access to the firewall on port 3389 which I am forwarding to an internal terminalserver. The Port is open and is answering to telnet sessions on that port: diva

Msrdp und Forwardings

2003-03-24 Thread debian-security
Hi ! I am using a ipchains firewall. I have set up the firewall using rcf firewall (http://rcf.mvlan.net:8080/). Now I have allowed access to the firewall on port 3389 which I am forwarding to an internal terminalserver. The Port is open and is answering to telnet sessions on that port: diva

AW: Traffic monitoring

2003-03-18 Thread debian-security
> >check out flowscan > >http://www.caida.org/tools/utilities/flowscan/ > >it gets close to what you want, assuming all the traffic is >passing through a cisco router. Something like this for Linux would bei really cool ! Nik

AW: Traffic monitoring

2003-03-18 Thread debian-security
> >check out flowscan > >http://www.caida.org/tools/utilities/flowscan/ > >it gets close to what you want, assuming all the traffic is >passing through a cisco router. Something like this for Linux would bei really cool ! Nik -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "

AW: antivirus scanning facility

2003-02-07 Thread debian-security
>I am using postfix. Are there anywhere any example >configuration scripts to include mailscanner and clamav into postfix? Try using amavisd-new ! -> I have got a setup running postfix with + Spamassassin +Clamav + Razor Works great ! ___

AW: antivirus scanning facility

2003-02-07 Thread debian-security
>I am using postfix. Are there anywhere any example >configuration scripts to include mailscanner and clamav into postfix? Try using amavisd-new ! -> I have got a setup running postfix with + Spamassassin +Clamav + Razor Works great ! ___

Re: [Fwd: ISS Advisory: OpenSSH Remote Challenge Vulnerability]

2002-06-26 Thread simon+debian-security
I am a bit worried about the ssh advisories, not the actual package itself (well, that too) but the way it was handled -- the openssh team issued new versions of a package and a security advisory asking everyone to update to the new package, Debian and others jumped on it and sent the new version

new photos from my party!

2002-01-28 Thread bounce-debian-security=archive=jab . org
Hello! My party... It was absolutely amazing! I have attached my web page with new photos! If you can please make color prints of my photos. Thanks! begin 666 www.myparty.yahoo.com M35J0``,$__\``+@`0``` M@`X?N@X`M`G-(;@!

Re: Yeh

2001-08-03 Thread Robert Davidson Security
On Fri, Aug 03, 2001 at 03:50:23AM +1000, Ian Miller wrote: > I know this may not be the place for it... but its a real laugh. > > http://www.linuks.mine.nu/debian/ Yep, it's not the place but it's a great site! I love the porn.conf file... links actually work (well the ones I tryed did anyway

Re: Yeh

2001-08-02 Thread Robert Davidson Security
On Fri, Aug 03, 2001 at 03:50:23AM +1000, Ian Miller wrote: > I know this may not be the place for it... but its a real laugh. > > http://www.linuks.mine.nu/debian/ Yep, it's not the place but it's a great site! I love the porn.conf file... links actually work (well the ones I tryed did anyways

Re: Help for iptables

2001-06-07 Thread Robert Davidson Security
I'm guessing that whats happened is you still have the old version installed, which the shell will find in your path first, and the iptables you have installed will be in /usr/local somewhere. Cya. On Wed, Jun 06, 2001 at 12:41:25AM +0200, Luc MAIGNAN wrote: > Hi all, > > I want to upgrade m

Re: Help for iptables

2001-06-05 Thread Robert Davidson Security
I'm guessing that whats happened is you still have the old version installed, which the shell will find in your path first, and the iptables you have installed will be in /usr/local somewhere. Cya. On Wed, Jun 06, 2001 at 12:41:25AM +0200, Luc MAIGNAN wrote: > Hi all, > > I want to upgrade

Re: Packet filtering help

2001-04-09 Thread bounce-debian-security=archive=jab . org
On Tue, Apr 10, 2001 at 09:59:52AM +1200, Simon Murcott wrote: > One thing that I forgot to mention in my previous post is that it is vitally > important that you block all ICMP traffic to/from your broadcast and network > addresses. This stops you and machines you route from being broadcast > am

Re: Automatic password changing

2000-03-23 Thread Robert Davidson Security
With all this automatic password changing stuff, and people making little perl progs and stuff to do it and all, wouldn't it be easier to just use "usermod" to change the password (it can do that, you supply the password on the command line in encrypted form). usermod -p encryptedpasswd root You