| Subject | Author | Date |
| [oss-security] Re: CVE Request -- Erlang/OTP R14, Erlang/OTP R14B01, Erlang/OTP R14B02 -- multiple security fixes | Rickard Green | 31 Mar 2011 |
| [oss-security] CVE Request -- Erlang/OTP R14, Erlang/OTP R14B01, Erlang/OTP R14B02 -- multiple security fixes | Jan Lieskovsky | 30 Mar 2011 |
| [oss-security] Re: CVE Request -- Erlang/OTP R14, Erlang/OTP R14B01, Erlang/OTP R14B02 -- multiple security fixes | Steven M. Christey | 30 Mar 2011 |
| [oss-security] Re: CVE Request -- Erlang/OTP R14, Erlang/OTP R14B01, Erlang/OTP R14B02 -- multiple security fixes | pan_at_nospam | 30 Mar 2011 |
| [oss-security] Re: CVE Request -- Erlang/OTP R14, Erlang/OTP R14B01, Erlang/OTP R14B02 -- multiple security fixes | Sverker Eriksson | 31 Mar 2011 |
| [oss-security] Re: CVE Request -- Erlang/OTP R14, Erlang/OTP R14B01, Erlang/OTP R14B02 -- multiple security fixes | Raimo Niskanen | 31 Mar 2011 |
| [oss-security] tiff CVE-2011-0192 patch broken | Ludwig Nussel | 30 Mar 2011 |
| [oss-security] CVE Request: rsyslogd memory leaks | Ludwig Nussel | 29 Mar 2011 |
| [oss-security] CVE request: cmsmadesimple before 1.9.1 | Hanno Böck | 29 Mar 2011 |
| Re: [oss-security] CVE request: cmsmadesimple before 1.9.1 | Josh Bressers | 30 Mar 2011 |
| [oss-security] CVE requests : Liferay 6.0.6 | Nicolas Grégoire | 29 Mar 2011 |
| [oss-security] CVE-2011-1478 kernel: gro: reset dev and skb_iff on skb reuse | Eugene Teo | 28 Mar 2011 |
| [oss-security] CVE Request -- Nagios -- XSS in the network status map CGI script | Jan Lieskovsky | 25 Mar 2011 |
| Re: [oss-security] CVE Request -- Nagios -- XSS in the network status map CGI script | Steven M. Christey | 28 Mar 2011 |
| [oss-security] CVE Request -- php-doctrine-Doctrine -- SQL injection flaw | Jan Lieskovsky | 25 Mar 2011 |
| Re: [oss-security] CVE Request -- php-doctrine-Doctrine -- SQL injection flaw | Steven M. Christey | 28 Mar 2011 |
| [oss-security] CVE-2011-0728: Loggerhead 1.18.1 security release | William Grant | 24 Mar 2011 |
| [oss-security] CVE Request -- Python (urllib, urllib2): Improper management of ftp:// and file:// URL schemes | Jan Lieskovsky | 24 Mar 2011 |
| [oss-security] Re: CVE Request -- Python (urllib, urllib2): Improper management of ftp:// and file:// URL schemes | Steven M. Christey | 28 Mar 2011 |
| [oss-security] CVE request: roundcube < 0.5.1 CSRF | Hanno Böck | 24 Mar 2011 |
| Re: [oss-security] CVE request: roundcube < 0.5.1 CSRF | Jan Lieskovsky | 24 Mar 2011 |
| [oss-security] CVE request: kernel: two OSS fixes | Dan Rosenberg | 23 Mar 2011 |
| Re: [oss-security] CVE request: kernel: two OSS fixes | Eugene Teo | 25 Mar 2011 |
| [oss-security] CVE Request: PHP-Nuke 8.x <= Cross Site Request Forgery (CSRF) / Anti-CSRF Bypass Vulnerability | YGN Ethical Hacker Group | 23 Mar 2011 |
| Re: [oss-security] CVE Request: PHP-Nuke 8.x <= Cross Site Request Forgery (CSRF) / Anti-CSRF Bypass Vulnerability | Josh Bressers | 30 Mar 2011 |
| [oss-security] CVE Request: PHP-Nuke 8.x <= Cross Site Scripting Vulnerability | YGN Ethical Hacker Group | 23 Mar 2011 |
| Re: [oss-security] CVE Request: PHP-Nuke 8.x <= Cross Site Scripting Vulnerability | Josh Bressers | 30 Mar 2011 |
| [oss-security] CVE Request: PHP-Nuke 8.x <= "chng_uid" Blind SQL Injection Vulnerability | YGN Ethical Hacker Group | 23 Mar 2011 |
| Re: [oss-security] CVE Request: PHP-Nuke 8.x <= "chng_uid" Blind SQL Injection Vulnerability | Josh Bressers | 30 Mar 2011 |
| [oss-security] CVE Request -- Asterisk Security Vulnerability | Matthew Nicholson | 23 Mar 2011 |
| Re: [oss-security] CVE Request -- Asterisk Security Vulnerability | Steven M. Christey | 23 Mar 2011 |
| [oss-security] CVE Request: perl: regex causes assertion fail | Ludwig Nussel | 23 Mar 2011 |
| Re: [oss-security] CVE Request: perl: regex causes assertion fail | Steven M. Christey | 28 Mar 2011 |
| [oss-security] oss-security is on twitter | Eugene Teo | 23 Mar 2011 |
| RE: [oss-security] oss-security is on twitter | Menkhus, Mark (GSE Security HP SSRT) | 23 Mar 2011 |
| --> Re: [oss-security] oss-security is on twitter | Eugene Teo | 24 Mar 2011 |
| Re: [oss-security] Linux kernel proactive security hardening | Solar Designer | 23 Mar 2011 |
| [oss-security] Linux kernel signal spoofing vulnerability (CVE request) | Julien Tinnes | 22 Mar 2011 |
| Re: [oss-security] Linux kernel signal spoofing vulnerability (CVE request) | Eugene Teo | 23 Mar 2011 |
| [oss-security] Re: Linux kernel signal spoofing vulnerability (CVE request) | Julien Tinnes | 29 Mar 2011 |
| [oss-security] CVE Request: libpng memory leak | Ludwig Nussel | 22 Mar 2011 |
| Re: [oss-security] CVE Request: libpng memory leak | Steven M. Christey | 28 Mar 2011 |
| [oss-security] CVE requests - kernel: irda/decnet issues | Eugene Teo | 22 Mar 2011 |
| Re: [oss-security] CVE requests - kernel: irda/decnet issues | Dan Rosenberg | 22 Mar 2011 |
| Re: [oss-security] CVE requests - kernel: irda/decnet issues | Josh Bressers | 22 Mar 2011 |
| --> Re: [oss-security] CVE requests - kernel: irda/decnet issues | Dan Rosenberg | 22 Mar 2011 |
| [oss-security] Possible security fixes in 5.05? | Raphael Geissert | 22 Mar 2011 |
| [oss-security] Security advisory: local DOS attack affecting non updated PaX patched kernels. | klondike | 21 Mar 2011 |
| Re: [oss-security] Security advisory: local DOS attack affecting non updated PaX patched kernels. | Steven M. Christey | 22 Mar 2011 |
| --> Re: [oss-security] Security advisory: local DOS attack affecting non updated PaX patched kernels. | klondike | 22 Mar 2011 |
| Re: [oss-security] Security advisory: local DOS attack affecting non updated PaX patched kernels. | klondike | 22 Mar 2011 |
| Re: [oss-security] CVE request: kernel: a collection ofworld-writable debugfs bugs | dan.j.rosenberg_at_nospam | 21 Mar 2011 |
| [oss-security] CVE Request (minor) -- Pidgin / libpurple -- Cipher API information disclosure | Jan Lieskovsky | 21 Mar 2011 |
| Re: [oss-security] CVE UnRequest (minor) -- Pidgin / libpurple -- Cipher API information disclosure | Jan Lieskovsky | 21 Mar 2011 |
| --> [oss-security] Local memory disclosure (was: libpurple CVE UnRequest) | Steven M. Christey | 21 Mar 2011 |
| --> Re: [oss-security] Local memory disclosure (was: libpurple CVE UnRequest) | Steve Grubb | 21 Mar 2011 |
| [oss-security] CVE request: kernel: multiple issues in ROSE | Dan Rosenberg | 20 Mar 2011 |
| Re: [oss-security] CVE request: kernel: multiple issues in ROSE | Eugene Teo | 21 Mar 2011 |
| --> Re: [oss-security] CVE request: kernel: multiple issues in ROSE | Dan Rosenberg | 30 Mar 2011 |
| [oss-security] CVE request: kernel: heap corruption in IrDA | Dan Rosenberg | 20 Mar 2011 |
| Re: [oss-security] CVE request: kernel: heap corruption in IrDA | Eugene Teo | 21 Mar 2011 |
| --> Re: [oss-security] CVE request: kernel: heap corruption in IrDA | Dan Rosenberg | 21 Mar 2011 |
| --> Re: [oss-security] CVE request: kernel: heap corruption in IrDA | Eugene Teo | 22 Mar 2011 |
| Re: [oss-security] CVE request: kernel: a collection of world-writable debugfs bugs | Vasiliy Kulikov | 20 Mar 2011 |
| Re: [oss-security] CVE request: kernel: a collection of world-writable debugfs bugs | Dan Rosenberg | 20 Mar 2011 |
| --> Re: [oss-security] CVE request: kernel: a collection of world-writable debugfs bugs | Vasiliy Kulikov | 21 Mar 2011 |
| [oss-security] CVE request: MPM-ITK module for Apache HTTPD | Stefan Fritsch | 20 Mar 2011 |
| Re: [oss-security] CVE request: MPM-ITK module for Apache HTTPD | Josh Bressers | 21 Mar 2011 |
| --> Re: [oss-security] CVE request: MPM-ITK module for Apache HTTPD | Steinar H. Gunderson | 21 Mar 2011 |
| Re: [oss-security] MaraDNS 1.4.06 and 1.3.07.11 released | Vincent Danen | 18 Mar 2011 |
| Re: [oss-security] MaraDNS 1.4.06 and 1.3.07.11 released | Raphael Geissert | 18 Mar 2011 |
| --> Re: [oss-security] MaraDNS 1.4.06 and 1.3.07.11 released | Vincent Danen | 18 Mar 2011 |
| [oss-security] CVE request: kernel: netfilter & econet infoleaks | Vasiliy Kulikov | 18 Mar 2011 |
| Re: [oss-security] CVE request: kernel: netfilter & econet infoleaks | Eugene Teo | 21 Mar 2011 |
| --> Re: [oss-security] CVE request: kernel: netfilter & econet infoleaks | Eugene Teo | 21 Mar 2011 |
| [oss-security] CVE Request: XOOPS 2.5.0 <= Cross Site Scripting Vulnerability | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: HP System Management Homepage(SMH) | Open URL Redirection | YGN Ethical Hacker Group | 18 Mar 2011 |
| Re: [oss-security] CVE Request: HP System Management Homepage(SMH) | Open URL Redirection | Mike O'Connor | 18 Mar 2011 |
| --> RE: [oss-security] CVE Request: HP System Management Homepage(SMH) | Open URL Redirection | Menkhus, Mark (GSE Security HP SSRT) | 19 Mar 2011 |
| [oss-security] CVE Request: PHP Support Ticket 2.2 <= Multiple Vulnerabilities | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: 2Wire Broadband Router Session Hijacking Vulnerability | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: TinyBrowser (TinyMCE Editor File browser) 1.41.6 - Multiple Vulnerabilities | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: Geeklog 1.7.1 <= Cross Site Scripting Vulnerability | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: MyBB 1.6 <= Cross Site Scripting Vulnerability | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: MyBB 1.6 <= SQL Injection | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: Joomla! 1.5.20 <= Cross Site Scripting (XSS) Vulnerability | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: Joomla! 1.5.21 <= SQL Injection Vulnerability | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE request: kernel: AudioScience HPI driver | Dan Rosenberg | 18 Mar 2011 |
| Re: [oss-security] CVE request: kernel: AudioScience HPI driver | Eugene Teo | 18 Mar 2011 |
| [oss-security] The risks of cleaning /tmp | Dan Rosenberg | 17 Mar 2011 |
| Re: [oss-security] The risks of cleaning /tmp | Nelson Elhage | 17 Mar 2011 |
| [oss-security] CVE request for Asterisk flaws | Vincent Danen | 17 Mar 2011 |
| Re: [oss-security] CVE request for Asterisk flaws | Josh Bressers | 21 Mar 2011 |
| [oss-security] CVE Request: xen DoS | Ludwig Nussel | 17 Mar 2011 |
| Re: [oss-security] CVE Request: xen DoS | Eugene Teo | 17 Mar 2011 |
| [oss-security] Re: CVE request for python-feedparser | Jonathan Wiltshire | 16 Mar 2011 |
| Re: [oss-security] Re: CVE request for python-feedparser | Josh Bressers | 21 Mar 2011 |
| [oss-security] CVE Request: kernel: fs/partitions: Corrupted OSF partition table can cause information disclosure | Timo Warns | 15 Mar 2011 |
| Re: [oss-security] CVE Request: kernel: fs/partitions: Corrupted OSF partition table can cause information disclosure | Josh Bressers | 15 Mar 2011 |
| Re: [oss-security] 2 acpid flaws | Ludwig Nussel | 15 Mar 2011 |
| Re: [oss-security] 2 acpid flaws | Josh Bressers | 15 Mar 2011 |
| [oss-security] gksu-polkit | Sebastian Krahmer | 15 Mar 2011 |
| Re: [oss-security] gksu-polkit | Josh Bressers | 15 Mar 2011 |
| [oss-security] CVE request for python-feedparser | Vincent Danen | 14 Mar 2011 |
| Re: [oss-security] CVE request for python-feedparser | Josh Bressers | 15 Mar 2011 |
| [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | Jan Lieskovsky | 14 Mar 2011 |
| [oss-security] Re: CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | David King | 14 Mar 2011 |
| Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | Josh Bressers | 14 Mar 2011 |
| --> Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | David Woodhouse | 14 Mar 2011 |
| [oss-security] Re: CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | Steven M. Christey | 14 Mar 2011 |
| Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | Josh Bressers | 15 Mar 2011 |
| --> Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | David Woodhouse | 16 Mar 2011 |
| --> Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | David King | 16 Mar 2011 |
| --> Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | David Woodhouse | 16 Mar 2011 |
| --> Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | Josh Bressers | 16 Mar 2011 |
| --> Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | David Woodhouse | 16 Mar 2011 |
| Re: [oss-security] CVE Request / Discussion -- vino -- reports the desktop being reachable only over the local network, when reachable from everywhere | Ludwig Nussel | 16 Mar 2011 |
| [oss-security] CVE request: format-string vulnerability in PHP Phar extension | Felipe Pena | 14 Mar 2011 |
| [oss-security] Re: CVE request: format-string vulnerability in PHP Phar extension | Felipe Pena | 14 Mar 2011 |
| Re: [oss-security] CVE request: format-string vulnerability in PHP Phar extension | Josh Bressers | 14 Mar 2011 |
| [oss-security] CVE requests - kernel: tpm infoleaks | Eugene Teo | 14 Mar 2011 |
| Re: [oss-security] CVE requests - kernel: tpm infoleaks | Josh Bressers | 14 Mar 2011 |
| --> Re: [oss-security] CVE requests - kernel: tpm infoleaks | Eugene Teo | 15 Mar 2011 |
| Re: [oss-security] CVE requests - kernel: tpm infoleaks | Josh Bressers | 15 Mar 2011 |
| [oss-security] CVE Request: Joomla! 1.6.0 | Cross Site Scripting (XSS) Vulnerability | YGN Ethical Hacker Group | 13 Mar 2011 |
| Re: [oss-security] CVE Request: Joomla! 1.6.0 | Cross Site Scripting (XSS) Vulnerability | Josh Bressers | 14 Mar 2011 |
| --> Re: [oss-security] CVE Request: Joomla! 1.6.0 | Cross Site Scripting (XSS) Vulnerability | YGN Ethical Hacker Group | 18 Mar 2011 |
| [oss-security] CVE Request: Joomla! 1.6.0 | SQL Injection Vulnerability | YGN Ethical Hacker Group | 13 Mar 2011 |
| Re: [oss-security] CVE Request: Joomla! 1.6.0 | SQL Injection Vulnerability | Josh Bressers | 14 Mar 2011 |
| [oss-security] Please REJECT CVE-2008-2956 | Michael Gilbert | 13 Mar 2011 |
| Re: [oss-security] Please REJECT CVE-2008-2956 | Eugene Teo | 14 Mar 2011 |
| [oss-security] CVE request: PHP substr_replace() use-after-free | Felipe Pena | 13 Mar 2011 |
| Re: [oss-security] CVE request: PHP substr_replace() use-after-free | Eugene Teo | 13 Mar 2011 |
| Re: [oss-security] CVE request: PHP substr_replace() use-after-free | Oden Eriksson | 13 Mar 2011 |
| --> Re: [oss-security] CVE request: PHP substr_replace() use-after-free | Felipe Pena | 13 Mar 2011 |
| --> Re: [oss-security] CVE request: PHP substr_replace() use-after-free | Vincent Danen | 18 Mar 2011 |
| [oss-security] CVE Request: bbPress 1.0.2 <= Cross Site Scripting Vulnerability | YGN Ethical Hacker Group | 13 Mar 2011 |
| Re: [oss-security] CVE Request: bbPress 1.0.2 <= Cross Site Scripting Vulnerability | Josh Bressers | 14 Mar 2011 |
| [oss-security] Untrusted fs and invalid filenames | Vasiliy Kulikov | 12 Mar 2011 |
| Re: [oss-security] Untrusted fs and invalid filenames | Steve Grubb | 13 Mar 2011 |
| Re: [oss-security] Untrusted fs and invalid filenames | Eitan Adler | 13 Mar 2011 |
| Re: [oss-security] Untrusted fs and invalid filenames | Stephan Mueller | 14 Mar 2011 |
| --> Re: [oss-security] Untrusted fs and invalid filenames | Dan Rosenberg | 14 Mar 2011 |
| --> Re: [oss-security] Untrusted fs and invalid filenames | Stephan Mueller | 14 Mar 2011 |
| --> Re: [oss-security] Untrusted fs and invalid filenames | Steve Grubb | 14 Mar 2011 |
| --> Re: [oss-security] Untrusted fs and invalid filenames | Vasiliy Kulikov | 14 Mar 2011 |
| --> Re: [oss-security] Untrusted fs and invalid filenames | Ludwig Nussel | 14 Mar 2011 |
| --> Re: [oss-security] Untrusted fs and invalid filenames | Steve Grubb | 14 Mar 2011 |
| [oss-security] announcing libwipe | Andrew Clausen | 12 Mar 2011 |
| Re: [oss-security] announcing libwipe | Kees Cook | 13 Mar 2011 |
| Re: [oss-security] announcing libwipe | Pierre Joye | 13 Mar 2011 |
| --> Re: [oss-security] announcing libwipe | Andrew Clausen | 14 Mar 2011 |
| [oss-security] Re: announcing libwipe | Andrew Clausen | 14 Mar 2011 |
| Re: [oss-security] CVE request: kernel: CAP_SYS_MODULE bypass via CAP_NET_ADMIN | Vasiliy Kulikov | 11 Mar 2011 |
| [oss-security] CVE Request -- Asterisk AST-2011-002 / Multiple array overflow and crash vulnerabilities in UDPTL code | Jan Lieskovsky | 11 Mar 2011 |
| Re: [oss-security] CVE Request -- Asterisk AST-2011-002 / Multiple array overflow and crash vulnerabilities in UDPTL code | Josh Bressers | 11 Mar 2011 |
| --> Re: [oss-security] CVE Request -- Asterisk AST-2011-002 / Multiple array overflow and crash vulnerabilities in UDPTL code | Matthew Nicholson | 11 Mar 2011 |
| [oss-security] CVE-2011-0695 kernel: panic in ib_cm:cm_work_handler | Eugene Teo | 11 Mar 2011 |
| [oss-security] nss-pam-ldapd security advisory (CVE-2011-0438) | Arthur de Jong | 09 Mar 2011 |
| [oss-security] CVE request: libvirt: several API calls do not honour read-only connection | Petr Matousek | 09 Mar 2011 |
| Re: [oss-security] CVE request: libvirt: several API calls do not honour read-only connection | Josh Bressers | 10 Mar 2011 |
| [oss-security] CVE request: buffer overflow in unixODBC's SQLDriverConnect() | Felipe Pena | 09 Mar 2011 |
| Re: [oss-security] CVE request: buffer overflow in unixODBC's SQLDriverConnect() | Josh Bressers | 10 Mar 2011 |
| [oss-security] CVE-2011-0714 kernel: deficiency in handling of invalid data packets in lockd | Petr Matousek | 08 Mar 2011 |
| Re: [oss-security] CVE-2011-0714 kernel: deficiency in handling of invalid data packets in lockd | Eugene Teo | 09 Mar 2011 |
| [oss-security] KDE SSL name check issue | Tomas Hoger | 08 Mar 2011 |
| Re: [oss-security] KDE SSL name check issue | Josh Bressers | 08 Mar 2011 |
| [oss-security] CVE request, php's shm | Pierre Joye | 08 Mar 2011 |
| Re: [oss-security] CVE request, php's shm | Josh Bressers | 08 Mar 2011 |
| Re: [oss-security] CVE request, php's shm | Tomas Hoger | 08 Mar 2011 |
| [oss-security] glibc locale escaping issue | Tomas Hoger | 08 Mar 2011 |
| Re: [oss-security] glibc locale escaping issue | Josh Bressers | 08 Mar 2011 |
| --> Re: [oss-security] glibc locale escaping issue | Steven M. Christey | 08 Mar 2011 |
| [oss-security] Buffer overflows in fsck may become security issues | Ludwig Nussel | 08 Mar 2011 |
| [oss-security] CVE request: kernel: dccp: fix oops on Reset after close | Eugene Teo | 08 Mar 2011 |
| Re: [oss-security] CVE request: kernel: dccp: fix oops on Reset after close | Josh Bressers | 08 Mar 2011 |
| [oss-security] ldd can execute an app unexpectedly | Steve Grubb | 07 Mar 2011 |
| Re: [oss-security] ldd can execute an app unexpectedly | Dmitry V. Levin | 08 Mar 2011 |
| --> Re: [oss-security] ldd can execute an app unexpectedly | Steve Grubb | 08 Mar 2011 |
| --> Re: [oss-security] ldd can execute an app unexpectedly | Tim Brown | 08 Mar 2011 |
| Re: [oss-security] ldd can execute an app unexpectedly | Tomas Hoger | 08 Mar 2011 |
| --> Re: [oss-security] ldd can execute an app unexpectedly | Steve Grubb | 08 Mar 2011 |
| [oss-security] cgit convert_query_hexchar infinite loop (CVE-2011-1027) | Tomas Hoger | 07 Mar 2011 |
| [oss-security] CVE request - kernel: nfs4: Ensure that ACL pages sent over NFS were not allocated from the slab | Eugene Teo | 07 Mar 2011 |
| Re: [oss-security] CVE request - kernel: nfs4: Ensure that ACL pages sent over NFS were not allocated from the slab | Josh Bressers | 07 Mar 2011 |
| [oss-security] kernel: modules_disabled policy | Vasiliy Kulikov | 05 Mar 2011 |
| Re: [oss-security] kernel: modules_disabled policy | Kees Cook | 05 Mar 2011 |
| Re: [oss-security] kernel: modules_disabled policy | Steve Grubb | 06 Mar 2011 |
| Re: [oss-security] Re: CVE request: More Evince overflows | Tomas Hoger | 04 Mar 2011 |
| [oss-security] CVE Request -- logrotate -- nine issues | Jan Lieskovsky | 04 Mar 2011 |
| Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Florian Zumbiehl | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Steven M. Christey | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Steven M. Christey | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Dan Rosenberg | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Steve Grubb | 07 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Josh Bressers | 07 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Florian Zumbiehl | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 05 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Florian Zumbiehl | 06 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Jan Lieskovsky | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Pavel Labushev | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 05 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Pavel Labushev | 06 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 06 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Pavel Labushev | 06 Mar 2011 |
| Re: [oss-security] CVE Request -- logrotate -- nine issues | Steven M. Christey | 04 Mar 2011 |
| Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 04 Mar 2011 |
| Re: [oss-security] CVE Request -- logrotate -- nine issues | Jan Lieskovsky | 04 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 05 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Jan Kaluža | 07 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Paul Martin | 07 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Josh Bressers | 07 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Ludwig Nussel | 08 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Josh Bressers | 10 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Florian Zumbiehl | 10 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 10 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Florian Zumbiehl | 10 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Solar Designer | 11 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Ludwig Nussel | 11 Mar 2011 |
| --> Re: [oss-security] CVE Request -- logrotate -- nine issues | Ludwig Nussel | 23 Mar 2011 |
| Re: [oss-security] CVE Request -- logrotate -- nine issues | Josh Bressers | 14 Mar 2011 |
| [oss-security] CVE-2011-1076 kernel: DNS: Fix a NULL pointer deref when trying to read an error key | Eugene Teo | 04 Mar 2011 |
| [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 04 Mar 2011 |
| Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dmitry V. Levin | 04 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 04 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Ludwig Nussel | 04 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 05 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Kees Cook | 05 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Josh Bressers | 07 Mar 2011 |
| Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Ludwig Nussel | 14 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 14 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 14 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 15 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Tomas Hoger | 22 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 22 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Dan Rosenberg | 31 Mar 2011 |
| --> Re: [oss-security] Suid mount helpers fail to anticipate RLIMIT_FSIZE | Patrick J. Volkerding | 31 Mar 2011 |
| [oss-security] Vendor-sec hosting and future of closed lists | Marcus Meissner | 03 Mar 2011 |
| Re: [oss-security] Vendor-sec hosting and future of closed lists | Mark J Cox | 03 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Kees Cook | 03 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Steven M. Christey | 03 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Greg KH | 03 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Mark J Cox | 04 Mar 2011 |
| Re: [oss-security] Vendor-sec hosting and future of closed lists | Josh Bressers | 03 Mar 2011 |
| Re: [oss-security] Vendor-sec hosting and future of closed lists | Kees Cook | 03 Mar 2011 |
| Re: [oss-security] Vendor-sec hosting and future of closed lists | Solar Designer | 03 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | S.P.Zeidler | 05 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Greg KH | 05 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | S.P.Zeidler | 06 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Matthieu Herrb | 06 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Eugene Teo | 07 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Andrea Barisani | 07 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Josh Bressers | 08 Mar 2011 |
| --> [oss-security] Vendor-sec hosting and future of closed lists | R P Herrold | 08 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | akuster | 08 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Andrea Barisani | 08 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Mike O'Connor | 15 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Andrea Barisani | 16 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Art Manion | 15 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Willy Tarreau | 07 Mar 2011 |
| Re: [oss-security] Vendor-sec hosting and future of closed lists | Marcus Meissner | 04 Mar 2011 |
| Re: [oss-security] Vendor-sec hosting and future of closed lists | Dan Rosenberg | 04 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Greg KH | 04 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Michael Gilbert | 04 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Greg KH | 04 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Mike O'Connor | 15 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Eugene Teo | 15 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Mike O'Connor | 15 Mar 2011 |
| --> RE: [oss-security] Vendor-sec hosting and future of closed lists | Menkhus, Mark (GSE Security HP SSRT) | 16 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Eugene Teo | 16 Mar 2011 |
| --> RE: [oss-security] Vendor-sec hosting and future of closed lists | Menkhus, Mark (GSE Security HP SSRT) | 16 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Eugene Teo | 17 Mar 2011 |
| --> RE: [oss-security] Vendor-sec hosting and future of closed lists | Mark J Cox | 16 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Mike O'Connor | 17 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Dan Rosenberg | 04 Mar 2011 |
| --> Re: [oss-security] Vendor-sec hosting and future of closed lists | Greg KH | 04 Mar 2011 |
| Re: [oss-security] Vendor-sec hosting and future of closed lists | Steven M. Christey | 04 Mar 2011 |
| [oss-security] CVE-2011-1023 kernel: rds: prevent BUG_ON triggering on congestion map updates | Eugene Teo | 03 Mar 2011 |
| [oss-security] CVE request: gri < 2.12.18 insecure temp file generation | henri_at_nospam | 02 Mar 2011 |
| Re: [oss-security] CVE request: gri < 2.12.18 insecure temp file generation | Josh Bressers | 03 Mar 2011 |
| Re: [oss-security] CVE requests: freebsd kernel/tesseract/xinha/proftpd | Steven M. Christey | 02 Mar 2011 |
| Re: [oss-security] CVE request: simple machines forum before 1.1.13 | Steven M. Christey | 02 Mar 2011 |
| [oss-security] CVE request: VLC bookmark buffer overflow | henri_at_nospam | 02 Mar 2011 |
| Re: [oss-security] CVE request: VLC bookmark buffer overflow | Josh Bressers | 03 Mar 2011 |
| --> Re: [oss-security] CVE request: VLC bookmark buffer overflow | Josh Bressers | 03 Mar 2011 |
| --> Re: [oss-security] CVE request: VLC bookmark buffer overflow | Henri Salo | 24 Mar 2011 |
| --> Re: [oss-security] CVE request: VLC bookmark buffer overflow | Steven M. Christey | 28 Mar 2011 |
| [oss-security] CVE request: kernel: Multiple DoS issues in epoll | Nelson Elhage | 02 Mar 2011 |
| Re: [oss-security] CVE request: kernel: Multiple DoS issues in epoll | Petr Matousek | 02 Mar 2011 |
| [oss-security] cve request for smoothwall & openfiler | dave b | 01 Mar 2011 |
| Re: [oss-security] cve request for smoothwall & openfiler | Josh Bressers | 03 Mar 2011 |
| Re: [oss-security] CVE Request -- OpenLDAP -- two issues | Ralf Haferkamp | 01 Mar 2011 |
| Re: [oss-security] CVE Request -- OpenLDAP -- two issues | Vincent Danen | 01 Mar 2011 |
| Re: [oss-security] CVE Request -- OpenLDAP -- two issues | Josh Bressers | 01 Mar 2011 |
| Re: [oss-security] CVE request: kernel: two bluetooth and one ebtables infoleaks/DoSes | Petr Matousek | 01 Mar 2011 |
| [oss-security] CVE request: Atlassian JIRA Parameter-Based Redirection Vulnerability | henri_at_nospam | 01 Mar 2011 |
| Re: [oss-security] CVE request: Atlassian JIRA Parameter-Based Redirection Vulnerability | Josh Bressers | 01 Mar 2011 |
| Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Pierre Joye | 01 Mar 2011 |
| Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Helgi Þormar Þorbjörnsson | 01 Mar 2011 |
| --> Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Vincent Danen | 03 Mar 2011 |
| Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Dan Rosenberg | 01 Mar 2011 |
| --> Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Pierre Joye | 01 Mar 2011 |
| --> Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Helgi Þormar Þorbjörnsson | 01 Mar 2011 |
| --> Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Helgi Þormar Þorbjörnsson | 08 Mar 2011 |
| --> Re: [oss-security] CVE Request: PEAR Installer 1.9.1 <= - Symlink Attack | Vincent Danen | 11 Mar 2011 |
| Re: [oss-security] CVE request - kernel: xfs infoleak | Eugene Teo | 01 Mar 2011 |