<?xml version="1.0" encoding="ISO-8859-1"?>
<rss version="0.92">
<channel>
     <title>FullDisclosure at insecure.org</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/date.html</link>
     <description>Latest posts to fulldisclosure with detailed descriptions</description>
     <managingEditor>fyodor@NOSPAMinsecure.org (fyodor)</managingEditor>
     <webMaster>djeaux@NOSPAMdjeaux.com (djeaux)</webMaster>
     <generator>Scythe 2.10</generator>
     <lastBuildDate>Fri, 3 Jul 2009 21:02:30 PDT</lastBuildDate>
     <image>
          <url>http://www.djeaux.com/images/scraped_88x31.png</url>
          <title>fulldisclosure at insecure.org</title>
          <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul</link>
          <description>FullDisclosure scraped from insecure.org</description>
     </image>
     <language>en-us</language>

<item>
     <title>Iceman.Ro - 'new' botnet to come</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0026.html</link>
     <author>johndo.jd@NOSPAMgmail.com (John Doe)</author>
     <pubDate>Fri, 3 Jul 2009 18:26:01 +0200</pubDate>
     <description>18:13 -!- IceMan [bbatIceMan&#46;ro] has joined #root 18:13 &lt; pinkpanther&gt; Hello, friend 18:13 &lt; IceMan&gt; uh :))))) 18:13 &lt; pinkpanther&gt; We were just talking about you 18:13 &lt; L&gt; hi there 18:13 &lt; IceMan&gt; eh i must close this ircd 2 18:13 &lt; IceMan&gt; uf uf uf ...</description>
</item>
 
<item>
     <title>[SECURITY] [DSA 1825-1] New nagios2/nagios3 packages fix arbitrary code execution</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0025.html</link>
     <author>nion@NOSPAMdebian.org (Nico Golde)</author>
     <pubDate>Fri, 3 Jul 2009 17:46:14 +0200</pubDate>
     <description>- Debian Security Advisory DSA-1825-1 securityatdebian&#46;org Nico Golde July 3rd, 2009 - Package : nagios2, nagios3 Vulnerability : insufficient input validation Problem type : remote Debian-specific: no CVE ID : CVE-2009-2288 It was discovered that the statuswml.cgi script of nagios, a monitoring ...</description>
</item>
 
<item>
     <title>Re:  radware AppWall Web Application Firewall: Source code disclosure on management interface</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0024.html</link>
     <author>3APA3A@NOSPAMSECURITY.NNOV.RU (Vladimir '3APA3A' Dubrovin)</author>
     <pubDate>Fri, 3 Jul 2009 16:58:13 +0400</pubDate>
     <description>Dear Shaked Vax, Are you sure Radware Team have analysed reflected attack via user's browser (AppWall administrator visits malcrafted page, page redirects his request to AppWall) before excluding remote vector? --Thursday, July 2, 2009, 3:23:16 PM, you wrote to full-disclosureatlists&#46;grok.org.uk: ...</description>
</item>
 
<item>
     <title>a simple race condition and how you'd solve it</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0023.html</link>
     <author>ge@NOSPAMlinuxbox.org (Gadi Evron)</author>
     <pubDate>Fri, 03 Jul 2009 03:25:23 +0300</pubDate>
     <description>A friend recently demonstrated on his blog a simple race condition he encountered. He also challenged folks to solve the problem. There's an interesting discussion in the comments which is worth a quick read. Also, maybe someone here will come up with a cuter idea? Gadi. -- ...</description>
</item>
 
<item>
     <title>CVE-2008-3531</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0022.html</link>
     <author>argp@NOSPAMcensus-labs.com (Patroklos Argyroudis)</author>
     <pubDate>Thu, 2 Jul 2009 23:51:42 +0300</pubDate>
     <description>&#47;* * cve-2008-3531.c -- Patroklos Argyroudis, argp at domain census-labs.com * * Privilege escalation exploit for the FreeBSD-SA-08:08.nmount * (CVE-2008-3531) vulnerability: * * * * * For a detailed analysis see: * * * * Sample run: ...</description>
</item>
 
<item>
     <title>phpMyAdmin exploited in masses</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0021.html</link>
     <author>johndo.jd@NOSPAMgmail.com (John Doe)</author>
     <pubDate>Fri, 3 Jul 2009 13:49:52 +0200</pubDate>
     <description>Hi. Disclosing out of boredom and for the crawlers to archive. Keywords: phpmyadmin, web, exploit, zavod, devitalia, mwstudio, szervernet, infotel, oodrive, iceman, romania, scriptkiddie. An example of the phpmyadmin exploit used in masses without thinking. IRC server: irc10.iceman.ro has address 85.214.36.2 ( h747052.serverkompetenz.net) IRC port: 9999 ...</description>
</item>
 
<item>
     <title>One Click Ownage [White Paper and Scripts]</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0020.html</link>
     <author>ferruh@NOSPAMmavituna.com (Ferruh Mavituna)</author>
     <pubDate>Fri, 3 Jul 2009 11:50:50 +0100</pubDate>
     <description>This is a different and more practical approach to get a reverse shell or code execution in SQL Injections (particularly in MSSQL). The idea is simple. Getting a reverse shell from an SQL Injection with one HTTP request without using an extra channel such as TFTP, FTP to upload the ...</description>
</item>
 
<item>
     <title>Re:  [Code-Crunchers] a simple race condition and how you'd solve it</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0019.html</link>
     <author>pklanka@NOSPAMgmail.com (Phani)</author>
     <pubDate>Fri, 3 Jul 2009 09:34:37 +0530</pubDate>
     <description>I may be seriously wrong here; But how about implementing a simple bool cache as a check for cache result computation. result = cache.select(input) if result: return result resultcompute = cache.select(resultcompute) if (resultcompute == true) { while(!cache.select(resultcompute)) { } return cache.select(result) } ...</description>
</item>
 
<item>
     <title>Re:  [Code-Crunchers] a simple race condition and how you'd solve it</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0018.html</link>
     <author>Valdis.Kletnieks@NOSPAMvt.edu (Valdis.Kletnieks_at_vt.edu)</author>
     <pubDate>Thu, 02 Jul 2009 22:04:26 -0400</pubDate>
     <description>On Fri, 03 Jul 2009 11:01:34 1000, silky said: &gt; Basically, you just need to check if you should still be computing, &gt; and, at the end of computation, if your data is still &quot;wanted&quot;. All that does is push the race condition around. You *still* need to ...</description>
</item>
 
<item>
     <title>Re:  [Code-Crunchers] a simple race condition and how you'd solve it</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0017.html</link>
     <author>michaelslists@NOSPAMgmail.com (silky)</author>
     <pubDate>Fri, 3 Jul 2009 11:01:34 +1000</pubDate>
     <description>On Fri, Jul 3, 2009 at 10:25 AM, Gadi Evron&lt;geatlinuxbox&#46;org&gt; wrote: &gt; A friend recently demonstrated on his blog a simple race condition he &gt; encountered. He also challenged folks to solve the problem. &gt; &gt; &gt; There's an interesting discussion in the comments which is worth a quick ...</description>
</item>
 
<item>
     <title>Soulseek 157 NS &lt; 13e &amp; 156.* Remote Direct Peer Search Code Execution</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0016.html</link>
     <author>laurent.gaffie@NOSPAMgmail.com (laurent gaffie)</author>
     <pubDate>Thu, 2 Jul 2009 20:27:59 -0400</pubDate>
     <description>Soulseek 157 NS &lt; 13e &amp; 156.* Remote Peer Search Code Execution - Release date: July 02, 2009 - Discovered by: Laurent Gaffié ; - Severity: critical I. VULNERABILITY Soulseek 157 NS &lt; 13e &amp; 156.* Remote Peer Search Code Execution II. BACKGROUND ...</description>
</item>
 
<item>
     <title>[ GLSA 200907-01 ] libwmf: User-assisted execution of arbitrary code</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0015.html</link>
     <author>a3li@NOSPAMgentoo.org (Alex Legler)</author>
     <pubDate>Thu, 02 Jul 2009 21:36:57 +0200</pubDate>
     <description>- - Gentoo Linux Security Advisory GLSA 200907-01 - - - - Severity: Normal Title: libwmf: User-assisted execution of arbitrary code Date: July 02, 2009 Bugs: #268161 ID: 200907-01 - - Synopsis libwmf bundles an old GD version which contains a &quot;use-after-free&quot; ...</description>
</item>
 
<item>
     <title>[ GLSA 200907-02 ] ModSecurity: Denial of Service</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0014.html</link>
     <author>a3li@NOSPAMgentoo.org (Alex Legler)</author>
     <pubDate>Thu, 02 Jul 2009 21:38:32 +0200</pubDate>
     <description>- - Gentoo Linux Security Advisory GLSA 200907-02 - - - - Severity: Normal Title: ModSecurity: Denial of Service Date: July 02, 2009 Bugs: #262302 ID: 200907-02 - - Synopsis Two vulnerabilities in ModSecurity might lead to a Denial of Service. ...</description>
</item>
 
<item>
     <title>[USN-795-1] Nagios vulnerability</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0013.html</link>
     <author>marc.deslauriers@NOSPAMcanonical.com (Marc Deslauriers)</author>
     <pubDate>Thu, 02 Jul 2009 14:29:06 -0400</pubDate>
     <description>Ubuntu Security Notice USN-795-1 July 02, 2009 nagios2, nagios3 vulnerability CVE-2009-2288 A security issue affects the following Ubuntu releases: Ubuntu 8.04 LTS Ubuntu 8.10 Ubuntu 9.04 This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. ...</description>
</item>
 
<item>
     <title>[USN-794-1] Perl vulnerability</title>
     <link>http://www.seclists.org/lists/fulldisclosure/2009/Jul/0012.html</link>
     <author>marc.deslauriers@NOSPAMcanonical.com (Marc Deslauriers)</author>
     <pubDate>Thu, 02 Jul 2009 14:27:30 -0400</pubDate>
     <description>Ubuntu Security Notice USN-794-1 July 02, 2009 libcompress-raw-zlib-perl, perl vulnerability CVE-2009-1391 A security issue affects the following Ubuntu releases: Ubuntu 8.04 LTS Ubuntu 8.10 Ubuntu 9.04 This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. ...</description>
</item>
 
</channel>
</rss>
