New User, Welcome!     Login

just fine

Re: Buffer-overflow in Quicktime Player 7.3.1.70

XP redirects just fine.

/str0ke

none@void.gov.com wrote:
> yea i second that i tested on Vista and it doesnt attempt to redirect to the port 80 there must be another condition that u have specified that allows for redirection 
>
>   



Re: Cross Platform remote IM vulnerability / DOS

> At the least this causes the other machine to send out more packets than the average user may have known of, with a little thinking and just as much resources this could be used as a distributed denial of service attack.

Funny, don't even know why I wasted time with this but here goes... Sent
the message to a coworker of mine who just installed Pidgin and he
received the message just fine. Which (if any) off the record plugins
were used (http://www.cypherpunks.ca/otr/)

> On the current version of pidgin when this was tested on several OS's it often froze up the targets IM window for the duration of the attack and sometimes the entire system performance suffers. While the attack was being performed the IM window is non-usable.

What versions of operating systems to and from?

Re: Banks (Wellsfargo.com) using CDNs to deliver Javascript: enables password theft by anyone compromising or controlling the CDN

> is owned by a nice guy who locks his door at the end of the day, but  
> I don't expect my bank to rely on him for security.
>
> This was reported to wellsfargo security on November 17.  They  
> assure me that the padlock icon on the browser means everything is  
> just fine.
>



Re: [Full-disclosure] [Tool] DeepToad 1.1.0

> some domain specific knowledge.  What I found, somewhat surprisingly, was
> that dumb string comparison was more than enough.  In fact, when I compared
> pre-patch and post-patch builds, it was easy to directly see when content
> was added, removed, shifted in location, etc.  Joxean's going to have much
> the same result -- as basic as his similarity metric is, he'll get the broad
> strokes just fine.
>
> Ultimately the best approach is to build a graph of how functions interact
> and measure graph isomorphism, but of course Halvar figured that out years
> ago :)
>

Re: Y2K10 spamassassin bug, 2010 year mails discared as spam

This should probably go in your local.cf so you don't wipe it out 
accidentally.

> The 'sa-update' options not always works for me.

Yes, on my system it turned out sa-update was working just fine, but 
some programs were looking at the wrong set of rules so it looked like 
sa-update wasn't working.



Re: [Full-disclosure] [Tool] DeepToad 1.1.0

> directly see when content
> > was added, removed, shifted in location, etc. 
> Joxean's going to have much
> > the same result -- as basic as his similarity metric
> is, he'll get the broad
> > strokes just fine.
> >
> > Ultimately the best approach is to build a graph of
> how functions interact
> > and measure graph isomorphism, but of course Halvar
> figured that out years

Re: Re: Re: Re: Confirmed: Windows Explorer bad PNG file preview integer overflow handling

I have tested this on a Windoze XP SP2 (fully patched).  Scanned with
Norton AV Corporate Edition v 10 and ClamAV 0.91.2 and both scans came
back just fine, no hanging.

Upon opening the file, it caused 50% CPU utilization at a constant
rate.  That could not be stopped until the computer was reboot.
Simply closing the program wasn't enough to stop the CPU from
stopping...

BTW - I'm running this on a P4 with HT.  Not a dual core...



Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!