New User, Welcome!     Login

Next Page >>

open source code

CFP: Workshop on Open Source Software for Computer and Network Forensics

[ Our anticipate apologies if you receive this call for paper more than
once! ]

CALL FOR PAPERS:
1st Workshop on Open Source Software for Computer and Network Forensics
(OSSCoNF)

We are currently inviting the submission of full papers to the 1st Workshop
on Open Source Software for Computer and Network Forensics (OSSCoNF),
which will be held in conjunction with OSS2008, the Fourth International

CFP: Workshop on Open Source Software for Computer and Network Forensics

[ Our anticipate apologies if you receive this call for paper more than
once! ]

CALL FOR PAPERS:
1st Workshop on Open Source Software for Computer and Network Forensics
(OSSCoNF)

We are currently inviting the submission of full papers to the 1st Workshop
on Open Source Software for Computer and Network Forensics (OSSCoNF),
which will be held in conjunction with OSS2008, the Fourth International

CFP: Workshop on Open Source Software for Computer and Network Forensics

[ Our anticipate apologies if you receive this call for paper more than
once! ]

CALL FOR PAPERS:
1st Workshop on Open Source Software for Computer and Network Forensics
(OSSCoNF)

We are currently inviting the submission of full papers to the 1st Workshop
on Open Source Software for Computer and Network Forensics (OSSCoNF),
which will be held in conjunction with OSS2008, the Fourth International

CHASE - 2009 Lahoe Pakistan | Call for Papers

Registration fee for the first day is only Rs. 700/- which
includes lunch, teas and conference material.

A training tool kit of open source software comprising of
a 500 pages book and 9 CDs would be provided FREE OF COST
to the participants of the event.

Limited travel funds are available for speakers coming
outside of Pakistan.

Re: [SquirrelMail-Security] XSS in Squirrelmail plugin 'Virtual Keyboard' <= 0.9.1

Great, so you've made a big name for yourself now.

-- 
Paul Lesniewski
SquirrelMail Team
Please support Open Source Software by donating to SquirrelMail!
http://squirrelmail.org/donate_paul_lesniewski.php



Security, Open Source Style

Today we are excited to announce another community initiative--the Open
Source Software Security community (oss-security). This project is an
ongoing effort to manage security information in Open Source software by
building on the collaborative foundation of the open source model.

The purpose of oss-security is to encourage public discussion of security
flaws, concepts, and practices in the open source community.  We don't want
to simply be an information clearinghouse, or to replace any of the current
security lists and groups.  The goal is to fill an existing vacuum by
encouraging active participation of those interested in the ideas and

iPhoneDbg Toolkit

USB (iphone_tunnel.exe).

Thanks!
Nicolas (*)

Open Source Software
Core Security Technologies

-----
(*) I am a semi-senior exploit writer at Core Security Technologies.
I've being working in computer security for 3 years and I am specialized

[Full-disclosure] [tool] SDT Cleaner 1.0

    * I'm planning to add support for Windows 2000 / 2003.

Thanks!
Nahuel.

Open Source Software
Core Security Technologies





K-Meleon 1.5.3 Remote Array Overrun (Arbitrary code execution)

Original URL:
http://securityreason.com/achievement_securityalert/72


- --- 0.Description ---
K-Meleon is an extremely fast, customizable, lightweight web browser based on the Gecko layout engine developed by Mozilla which is also used by Firefox. K-Meleon is free, open source software released under the GNU General Public License and is designed specifically for Microsoft Windows (Win32) operating systems.


- --- 1. K-Meleon 1.5.3 Remote Array Overrun (Arbitrary code execution) ---
The main problem exist in dtoa implementation. K-Meleon has the same dtoa as a KDE, Opera and all BSD systems. This issue has been fixed in Firefox 3.5.4 and fix


Hiding Backdoors in plain sight

The CoreTex Team from Core Security is happy to announce the *1st Open
Backdoor Hiding & Finding Contest* to be held at DEFCON 0x12 this year!

Hiding a backdoor in open source code that will be subjected to the
scrutiny of security auditors by the hundredths may not be an easy task.
Positively and unequivocally identifying a cleverly hidden backdoor may
be extremely difficult as well.

But doing both things at DEFCON 0x12 could be a lot of fun!


Secunia Research: Free Download Manager Torrent Parsing Buffer Overflows

====================================================================== 
3) Vendor's Description of Software 

"What is Free Download Manager? It is a powerful, easy-to-use and
absolutely free download accelerator and manager. Moreover, FDM is 
100% safe, open-source software distributed under GPL license.".

Product Link:
http://www.freedownloadmanager.org/

====================================================================== 

{PRL} Novell Netware FTP Remote Stack Overflow

area networks, which displaced the dominant mainframe computing model
and changed computing worldwide. Today, a primary focus of the company
is on developing

open source software for enterprise clients.

(http://en.wikipedia.org/wiki/Novell)

#####################################################################################


=?ISO-8859-1?Q?Fwd=3A_=7BLostmon=B4s_Group=7D_K=2DMeleon_for_windows_about=3An?= =?ISO-8859-1?Q?eterror_Stack_Overflow_DoS?=

Vendor notified:Yes exploit available: YES
############################################

K-Meleon is an extremely fast, customizable, lightweight web browser
based on the Gecko layout engine developed by Mozilla which is also
used by Firefox. K-Meleon is free, open source software released under
the GNU General Public License and is designed specifically for
Microsoft Windows (Win32) operating systems.

K-Meleon is prone vulnerable to crashing with a very long URL...
Internal web pages like about:neterror does not limit the amount of

B-Sides Vienna | NinjaCon 11 Call For Participation

* Physical security and lock picking
* Biometrics
* Hardware hacking
* Phone phreaking
* Biohacking
* Open source software
* Evolutionary computing
* Robotics
* Massive abuse of technology

To apply, please use the submission form on http://cfp.bsidesvienna.com/

Announcing ShmooCon 08 and the CFP

DISCUSSION of the following:
+Privacy and anonymity
+Exploit and vulnerability disclosure / databases
+DRM (Digital Rights Management), fair use, copyright infringement
+Terrorism, counter-terrorism, and eavesdropping
+Open source software world domination strategies
+Controversial views on existing trends or technology

===================
Presentation Format - One Track Mind, (Friday Night Only)
===================

[waraxe-2010-SA#077] - Multiple Vulnerabilities in Calibre 0.7.34

KeyError: u'browse/waraxe'

Powered by CherryPy 3.1.2 
-------------------------------------------------------------------------------
So we can see, that static resources are handled via "content.py".
Calibre is Open Source software, so no need for reverse engineering.
Source code snippet:
-------------------------------------------------------------------------------
def static(self, name):
        'Serves static content'
        name = name.lower()

ShmooCon 2009 CFP

        • Privacy and anonymity
        • Exploit and vulnerability disclosure / databases
        • Team Fortress 2
        • DRM (Digital Rights Management), fair use, copyright infringement
        • Terrorism, counter-terrorism, and eavesdropping
        • Open source software world domination strategies
        • Controversial views on existing trends or technology

++++++++++++++++++++++++++++++++++++++++
+ ShmooBalls
++++++++++++++++++++++++++++++++++++++++

{PRL} Novell Netware CIFS And AFP Remote Memory Consumption DoS

1) Introduction
===============

Novell,Inc. is a global software and services company based in Waltham, Massachusetts. The company specializes in enterprise operating systems, such as SUSE Linux Enterprise and Novell NetWare; identity, security, and systems management solutions; and collaboration solutions, such as Novell Groupwise and Novell Pulse.

Novell was instrumental in making the Utah Valley a focus for technology and software development. Novell technology contributed to the emergence of local area networks, which displaced the dominant mainframe computing model and changed computing worldwide. Today, a primary focus of the company is on developing open source software for enterprise clients.

(http://en.wikipedia.org/wiki/Novell)

#####################################################################################


CubeCart 4 Session Management Bypass

I. Background

From Wikipedia: CubeCart is a free-to-use eCommerce software solution,
designed to allow individuals and businesses sell tangible and digital
goods on line.
CubeCart is not Open Source software, although full source code is
available at no cost, and the custom licensing model allows for
customisation of the code.
...
CubeCart has developed a large fanbase, due in part, to the relative
ease of creating modifications and enhancements.

Revision: Audacity <= 1.3 Beta Multiple Local Vulnerabilities ===> Audacity <= 1.3 Beta DLL Hijacking Vulnerability

 

I. ABOUT THE APPLICATION
________________________

Audacity is free, open source software  for recording and
editing sounds.


II. DESCRIPTION
_______________

Remote File Inclusion Vulnerability

eNYe-Sec - www.enye-sec.org

-- Description (by the author's page) --
eFront is an easy to use, visually attractive, SCORM compatible, eLearning
and Human Capital Development system. It is suitable for both company and
educational usage. The core eFront system is offered as open-source software
so you can download and start using it immediately. Check the functionality
matrix for different eFront editions.


-- Bug --

Heap overflow in PeerCast 0.1217

===============
1) Introduction
===============


PeerCast is a multi platform open source software for peer2peer radio
streaming.
The broadcasters are visible at http://yp.peercast.org


#######################################################################

Moodle 1.9.3 Remote Code Execution

Date              20081212

I. BACKGROUND

From the Moodle web site: "Moodle is a course management system (CMS) -
a free, Open Source software package designed using sound pedagogical
principles, to help educators create effective online learning
communities".

II. DESCRIPTION


Secunia Research: Free Download Manager Remote Control Server Buffer Overflow

====================================================================== 
3) Vendor's Description of Software 

"What is Free Download Manager? It is a powerful, easy-to-use and
absolutely free download accelerator and manager. Moreover, FDM is 
100% safe, open-source software distributed under GPL license.".

Product Link:
http://www.freedownloadmanager.org/

====================================================================== 

[Bkis-12-2009] eoCMS SQL injection vulnerability - Bkis Report

eoCMS SQL injection vulnerability

1. General information

eoCMS is an open source code software which is used to develop Internet 
forum (http://eocms.com/). On October 15, 2009, Bkis Security detected a 
SQL injection vulnerability in some functions of eoCMS.

This is a critical vulnerability which allows hacker to access the data 
in the database and execute unauthorized tasks. Bkis has informed the 

VUPEN Security Research - OpenOffice Word Document Processing Heap Overflow Vulnerabilities

I. BACKGROUND
---------------------

OpenOffice.org (OO.o or OOo), commonly known as OpenOffice, is an
open source software application suite available for a number of
different computer operating systems. It is distributed as free
software and written using its own GUI toolkit. It supports the
ISO/IEC standard OpenDocument Format (ODF) for data interchange
as its default file format, as well as Microsoft Office formats
among others. (Wikipedia)

CORE-2009-0420 - Apple CUPS IPP_TAG_UNSUPPORTED Handling null pointer Vulnerability

10. *References*

[1] http://www.cups.org.
[2] Vendor-sec, a mailing list dedicated to distributors of operating
systems using (but not necessarily solely comprised of) free and
open-source software.
http://oss-security.openwall.org/wiki/mailing-lists/vendor-sec.


11. *About CoreLabs*


PlumberCon 10 - Call for Papers

* Phone phreaking

* Food- and Biohacking

* Open source software

* Evolutionary computing

* Robotics


TCPDF Library Remote Code Execution Vulnerability

- --[ Product

TCPDF is an Open Source PHP class for generating PDF documents.
TCPDF project was started in 2002 and now it is freely used all
over the world by millions of people. TCPDF is a Free Libre Open
Source Software (FLOSS). -- http://www.tcpdf.org/

- --[ Vulnerability

Under certain circumstances, an intruder may be able to take
advantage of this flaw to execute arbitrary code with the

Secunia Research: Free Download Manager metalink "name" Directory Traversal

====================================================================== 
3) Vendor's Description of Software 

"What is Free Download Manager? It is a powerful, easy-to-use and
absolutely free download accelerator and manager. Moreover, FDM is
100% safe, open-source software distributed under GPL license.".

Product Link:
http://www.freedownloadmanager.org/

====================================================================== 

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!