[<prev month] [next month>] [year] [list]
oss-security mailing list - 2014/10
Messages by day:
October 1 (32 messages)
- Re: Healing the bash fork (Michal Zalewski <lcamtuf@...edump.cx>)
- Re: Healing the bash fork (Michal Zalewski <lcamtuf@...edump.cx>)
- Re: Healing the bash fork (Zach Wikholm <zwikholm@...i.net>)
- Re: Healing the bash fork (Peter Bex <Peter.Bex@...all.nl>)
- Re: Healing the bash fork (Hanno Böck <hanno@...eck.de>)
- Re: Healing the bash fork (Jason Cooper <osssecurity@...edaemon.net>)
- various sddm vulnerabilities (Sebastian Krahmer <krahmer@...e.de>)
- Xen Security Advisory 108 (CVE-2014-7188) - Improper MSR range
used for x2APIC emulation (Xen.org security team <security@....org>)
- RE: binary-patching bash ("jihyun.jang" <jihyun.jang@....com>)
- Re: Healing the bash fork (Tomas Hoger <thoger@...hat.com>)
- how to unsubscribe (Re: binary-patching bash) (Solar Designer <solar@...nwall.com>)
- Re: Healing the bash fork ("Stuart D. Gathman" <stuart@...hman.org>)
- Re: Healing the bash fork (Florian Weimer <fweimer@...hat.com>)
- Re: Healing the bash fork (Greg KH <greg@...ah.com>)
- Re: Healing the bash fork (Jason Cooper <osssecurity@...edaemon.net>)
- Re: Healing the bash fork (Greg KH <greg@...ah.com>)
- more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Hanno Böck <hanno@...eck.de>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Chet Ramey <chet.ramey@...e.edu>)
- CVE Request: linux kernel net_get_random_once bug (Andrew Tappert <andrew@...ewerks.com>)
- Re: Healing the bash fork (Loganaden Velvindron <loganaden@...il.com>)
- Any patch fixe CVE-2014-7186 and CVE-2014-7187 on Bash 3.2 (Hua Q <hqusa1999@...mail.com>)
- Re: Healing the bash fork (Colin Mahns <goatman93@...il.com>)
- Re: CVE Request: linux kernel net_get_random_once bug (Hannes Frederic Sowa <hannes@...essinduktion.org>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Shawn <citypw@...il.com>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Chet Ramey <chet.ramey@...e.edu>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Shawn <citypw@...il.com>)
- More parser odities ("Kobrin, Eric" <ekobrin@...mai.com>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Ed Prevost <me@...ardprevost.info>)
- xfs directory hash ordering bug (Hannes Frederic Sowa <hannes@...essinduktion.org>)
- Re: more bash parser bugs (CVE-2014-6277,
CVE-2014-6278) (Zach Wikholm <zwikholm@...i.net>)
- RE: more bash parser bugs (CVE-2014-6277,
CVE-2014-6278) ("Henry, Bobby" <Bobby.Henry@...edient.com>)
- Security advisory in Jenkins (Kohsuke Kawaguchi <kk@...suke.org>)
October 2 (47 messages)
- Re: Security advisory in Jenkins (Solar Designer <solar@...nwall.com>)
- Re: More parser odities ("Kobrin, Eric" <ekobrin@...mai.com>)
- Re: More parser odities (Solar Designer <solar@...nwall.com>)
- Re: More parser odities (Tavis Ormandy <taviso@...gle.com>)
- Re: More parser odities (Solar Designer <solar@...nwall.com>)
- Re: Security advisory in Jenkins (Bryan Drewery <bdrewery@...eBSD.org>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Chet Ramey <chet.ramey@...e.edu>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Chet Ramey <chet.ramey@...e.edu>)
- Re: More parser odities (Chet Ramey <chet.ramey@...e.edu>)
- Re: Security advisory in Jenkins (Solar Designer <solar@...nwall.com>)
- Re: Security advisory in Jenkins (Solar Designer <solar@...nwall.com>)
- Re: More parser odities (Michal Zalewski <lcamtuf@...edump.cx>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Shawn <citypw@...il.com>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Michal Zalewski <lcamtuf@...edump.cx>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Shawn <citypw@...il.com>)
- Re: xfs directory hash ordering bug / Linux kernel (cve-assign@...re.org)
- Re: CVE Request: linux kernel net_get_random_once bug (cve-assign@...re.org)
- Re: More parser odities (Solar Designer <solar@...nwall.com>)
- Re: More parser odities (Solar Designer <solar@...nwall.com>)
- CVE-2014-7224 - Android accessibility and accessibilityTraversal vulnerability (cve-assign@...re.org)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Ed Prevost <me@...ardprevost.info>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Ed Prevost <me@...ardprevost.info>)
- Re: More parser odities (Hanno Böck <hanno@...eck.de>)
- CVE request: Remote code execution via XSL extensions in SpagoBI (David Jorm <djorm@...hat.com>)
- Re: CVE request: Remote code execution via XSL extensions
in SpagoBI (Kurt Seifried <kseifried@...hat.com>)
- RE: more bash parser bugs (CVE-2014-6277,
CVE-2014-6278) (Sona Sarmadi <sona.sarmadi@...a.com>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Solar Designer <solar@...nwall.com>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Michal Zalewski <lcamtuf@...edump.cx>)
- CVE request: Mediawiki before 1.19.20, 1.22.12, 1.23.5 XSS through
CSS (Hanno Böck <hanno@...eck.de>)
- RE: more bash parser bugs (CVE-2014-6277,
CVE-2014-6278) (Sona Sarmadi <sona.sarmadi@...a.com>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Chet Ramey <chet.ramey@...e.edu>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Chet Ramey <chet.ramey@...e.edu>)
- Re: more bash parser bugs (CVE-2014-6277, CVE-2014-6278) (Michal Zalewski <lcamtuf@...edump.cx>)
- [OSSA 2014-032] Nova VMware driver still leaks rescued images (CVE-2014-3608) (Tristan Cacqueray <tristan.cacqueray@...vance.com>)
- Re: gnome-shell lockscreen bypass with printscreen key (cve-assign@...re.org)
- Re: CVE request: Mediawiki before 1.19.20, 1.22.12, 1.23.5 XSS through CSS (cve-assign@...re.org)
- Re: CVE request: Remote code execution via XSL extensions in SpagoBI (cve-assign@...re.org)
- Re: Re: gnome-shell lockscreen bypass with
printscreen key (Daniel Kahn Gillmor <dkg@...thhorseman.net>)
- RE: more bash parser bugs (CVE-2014-6277,
CVE-2014-6278) (Sona Sarmadi <sona.sarmadi@...a.com>)
- Re: various sddm vulnerabilities (Martin Bříza <mbriza@...hat.com>)
- RE: more bash parser bugs (CVE-2014-6277,
CVE-2014-6278) ("Menkhus, Mark (Global Cyber Security SSRT)" <mark.menkhus@...com>)
- Re: Re: gnome-shell lockscreen bypass with printscreen
key (Alan Coopersmith <alan.coopersmith@...cle.com>)
- RE: more bash parser bugs (CVE-2014-6277,
CVE-2014-6278) ("Menkhus, Mark (Global Cyber Security SSRT)" <mark.menkhus@...com>)
- tm_adopt() vulnerability in TORQUE Resource Manager (Chad Vizino <cvizino@...ptivecomputing.com>)
- Re: tm_adopt() vulnerability in TORQUE Resource Manager (Solar Designer <solar@...nwall.com>)
- Re: Healing the bash fork ("David A. Wheeler" <dwheeler@...eeler.com>)
- [OSSA 2014-033] Cinder-volume host data leak to vm instance (CVE-2014-3641) (Tristan Cacqueray <tristan.cacqueray@...vance.com>)
October 3 (20 messages)
October 4 (9 messages)
October 5 (17 messages)
October 6 (42 messages)
October 7 (41 messages)
October 8 (32 messages)
October 9 (35 messages)
October 10 (23 messages)
October 11 (3 messages)
October 12 (7 messages)
October 13 (6 messages)
October 14 (15 messages)
October 15 (24 messages)
October 16 (19 messages)
October 17 (15 messages)
October 18 (11 messages)
October 19 (6 messages)
October 20 (9 messages)
October 21 (5 messages)
October 22 (3 messages)
October 23 (9 messages)
October 24 (15 messages)
October 25 (3 messages)
October 26 (3 messages)
October 27 (5 messages)
October 28 (6 messages)
October 29 (8 messages)
October 30 (12 messages)
October 31 (3 messages)
485 messages
Powered by blists - more mailing lists
Please check out the
Open Source Software Security Wiki, which is counterpart to this
mailing list.
Confused about mailing lists and their use?
Read about mailing lists on Wikipedia
and check out these
guidelines on proper formatting of your messages.