oss-security February 2012 archive
Main Archive Page > Month Archives  > oss-security archives
oss-security: By Thread

oss-security By Thread

SubjectAuthor Date
[oss-security] CVE Request: NetworkManager arbitrary file accessLudwig Nussel29 Feb 2012
[oss-security] CVE Request (minor) -- osc: Improper sanitization of terminal emulator escape sequences when displaying build log and build statusJan Lieskovsky28 Feb 2012
[oss-security] Re: CVE Request (minor) -- osc: Improper sanitization of terminal emulator escape sequences when displaying build log and build statusMarcus Meissner28 Feb 2012
--> Re: [oss-security] Re: CVE Request (minor) -- osc: Improper sanitization of terminal emulator escape sequences when displaying build log and build statusKurt Seifried28 Feb 2012
--> Re: [oss-security] Re: CVE Request (minor) -- osc: Improper sanitization of terminal emulator escape sequences when displaying build log and build statusMarcus Meissner29 Feb 2012
[oss-security] CVE request: init script x11-common creates directories in insecure mannersvladz28 Feb 2012
Re: [oss-security] CVE request: init script x11-common creates directories in insecure mannersKurt Seifried29 Feb 2012
[oss-security] CVE request -- kernel: cifs: dentry refcount leak when opening a FIFO on lookup leads to panic on unmountPetr Matousek28 Feb 2012
Re: [oss-security] CVE request -- kernel: cifs: dentry refcount leak when opening a FIFO on lookup leads to panic on unmountKurt Seifried28 Feb 2012
[oss-security] DesktopOnNet 3 Beta LFIWhitney Houston27 Feb 2012
[oss-security] Re: DesktopOnNet 3 Beta LFIWhitney Houston27 Feb 2012
--> Re: [oss-security] Re: DesktopOnNet 3 Beta LFIKurt Seifried27 Feb 2012
Re: [oss-security] CVE request: smokeping XSSFlorian Weimer27 Feb 2012
[oss-security] CVE request: openssl: null pointer dereference issueMatthias Weckbecker27 Feb 2012
Re: [oss-security] CVE request: openssl: null pointer dereference issueKurt Seifried27 Feb 2012
--> Re: [oss-security] CVE request: openssl: null pointer dereference issueKurt Seifried28 Feb 2012
[oss-security] CVE Request -- Multiple instances of insecure temporary file useJan Lieskovsky27 Feb 2012
Re: [oss-security] CVE Request -- Multiple instances of insecure temporary file useKurt Seifried27 Feb 2012
[oss-security] Case YVS Image GalleryHenri Salo27 Feb 2012
Re: [oss-security] Case YVS Image GalleryKurt Seifried27 Feb 2012
--> Re: [oss-security] Case YVS Image GalleryHenri Salo27 Feb 2012
[oss-security] CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyJan Lieskovsky27 Feb 2012
Re: [oss-security] CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyKurt Seifried27 Feb 2012
--> Re: [oss-security] CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyRafał Malinowski28 Feb 2012
--> [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historycve-assign_at_nospam28 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyKurt Seifried28 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historycve-assign_at_nospam28 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyKurt Seifried28 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyMarcus Meissner29 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historycve-assign_at_nospam29 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyKurt Seifried28 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyKurt Seifried28 Feb 2012
[oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyRafał Malinowski27 Feb 2012
--> [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyMateusz Goik27 Feb 2012
--> [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyMateusz Goik27 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyKurt Seifried27 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyRafał Malinowski27 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyKurt Seifried28 Feb 2012
--> Re: [oss-security] Re: CVE Status Clarification / Request -- kadu: Stored XSS by parsing contact's status and sms messages in historyRafał Malinowski29 Feb 2012
[oss-security] Attack on badly configured Netfilter-based firewallsEric Leblond25 Feb 2012
Re: [oss-security] Attack on badly configured Netfilter-based firewallsYves-Alexis Perez25 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsEric Leblond25 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsEugene Teo27 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsSolar Designer27 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsEric Leblond27 Feb 2012
Re: [oss-security] Attack on badly configured Netfilter-based firewallsKurt Seifried26 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsEric Leblond26 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsSolar Designer26 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsEric Leblond26 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsyersinia27 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsSebastian Krahmer27 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsArkanoiD27 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsSebastian Krahmer27 Feb 2012
Re: [oss-security] Attack on badly configured Netfilter-based firewallsFlorian Weimer27 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsEric Leblond27 Feb 2012
--> Re: [oss-security] Attack on badly configured Netfilter-based firewallsEric Leblond28 Feb 2012
[oss-security] CVE request -- kernel: block: CLONE_IO io_context refcounting issuesPetr Matousek23 Feb 2012
Re: [oss-security] CVE request -- kernel: block: CLONE_IO io_context refcounting issuesKurt Seifried23 Feb 2012
[oss-security] CVE Request -- python-paste-script: Supplementary groups not dropped when started an application with "paster serve" as rootJan Lieskovsky23 Feb 2012
Re: [oss-security] CVE Request -- python-paste-script: Supplementary groups not dropped when started an application with "paster serve" as rootKurt Seifried23 Feb 2012
[oss-security] CVE-2012-0875: systemtap memory disclosure/kernel panic when processing malformed DWARF unwind dataVincent Danen22 Feb 2012
[oss-security] libxml2: hash table collisions CPU usage DoSHuzaifa Sidhpurwala22 Feb 2012
[oss-security] Bugs in "file" program VU#621745CERT(R) Coordination Center20 Feb 2012
Re: [oss-security] Bugs in "file" program VU#621745Kurt Seifried20 Feb 2012
--> Re: [oss-security] Bugs in "file" program VU#621745Florian Weimer29 Feb 2012
--> Re: [oss-security] Bugs in "file" program VU#621745Kurt Seifried29 Feb 2012
--> Re: [oss-security] Bugs in "file" program VU#621745Kurt Seifried29 Feb 2012
[oss-security] Dolphin 7.0.7 <= Multiple Cross Site Scripting VulnerabilitiesYGN Ethical Hacker Group20 Feb 2012
Re: [oss-security] Dolphin 7.0.7 <= Multiple Cross Site Scripting VulnerabilitiesKurt Seifried20 Feb 2012
[oss-security] OxWall 1.1.1 <= Multiple Cross Site Scripting VulnerabilitiesYGN Ethical Hacker Group20 Feb 2012
Re: [oss-security] OxWall 1.1.1 <= Multiple Cross Site Scripting VulnerabilitiesKurt Seifried20 Feb 2012
[oss-security] Vulnerabilitites in Debian F*EX <= 20100208 and F*EX 20111129-2.muuratsalo experimental hack lab20 Feb 2012
Re: [oss-security] Vulnerabilitites in Debian F*EX <= 20100208 and F*EX 20111129-2.Nico Golde20 Feb 2012
--> Re: [oss-security] Vulnerabilitites in Debian F*EX <= 20100208 and F*EX 20111129-2.Henri Salo20 Feb 2012
--> Re: [oss-security] Vulnerabilitites in Debian F*EX <= 20100208 and F*EX 20111129-2.Nico Golde20 Feb 2012
--> Re: [oss-security] Vulnerabilitites in Debian F*EX <= 20100208 and F*EX 20111129-2.Kurt Seifried20 Feb 2012
--> Re: [oss-security] Vulnerabilitites in Debian F*EX <= 20100208 and F*EX 20111129-2.Steven M. Christey23 Feb 2012
[oss-security] TORCS 1.3.2 xml buffer overflow - CVE-2012-1189Andres Gomez18 Feb 2012
[oss-security] CVE-2012-0864 assignment notification -- glibc F_S format string protection bypass via "nargs" integer overflowStefan Cornelius17 Feb 2012
[oss-security] CVE request: mumble local information disclosureVincent Danen15 Feb 2012
Re: [oss-security] CVE request: mumble local information disclosureKurt Seifried15 Feb 2012
Re: [oss-security] CVE request: mumble local information disclosureLudwig Nussel16 Feb 2012
--> Re: [oss-security] CVE request: mumble local information disclosureKurt Seifried16 Feb 2012
[oss-security] CVE Request -- python (SimpleXMLRPCServer): DoS (excessive CPU usage) via malformed XML-RPC / HTTP POST requestJan Lieskovsky13 Feb 2012
Re: [oss-security] CVE Request -- python (SimpleXMLRPCServer): DoS (excessive CPU usage) via malformed XML-RPC / HTTP POST requestKurt Seifried13 Feb 2012
--> Re: [oss-security] CVE Request -- python (SimpleXMLRPCServer): DoS (excessive CPU usage) via malformed XML-RPC / HTTP POST requestJan Lieskovsky14 Feb 2012
--> Re: [oss-security] CVE Request -- python (SimpleXMLRPCServer): DoS (excessive CPU usage) via malformed XML-RPC / HTTP POST requestDavid Malcolm14 Feb 2012
[oss-security] Subscribe to linux-distros?Matthias Weckbecker13 Feb 2012
Re: [oss-security] Subscribe to linux-distros?Marcus Meissner13 Feb 2012
--> Re: [oss-security] Subscribe to linux-distros?Solar Designer14 Feb 2012
[oss-security] CubeCart 3.0.20 (3.0.x) and lower | Open URL Redirection VulnerabilityYGN Ethical Hacker Group12 Feb 2012
Re: [oss-security] CubeCart 3.0.20 (3.0.x) and lower | Open URL Redirection VulnerabilityKurt Seifried13 Feb 2012
--> Re: [oss-security] CubeCart 3.0.20 (3.0.x) and lower | Open URL Redirection VulnerabilityYGN Ethical Hacker Group16 Feb 2012
--> Re: [oss-security] CubeCart 3.0.20 (3.0.x) and lower | Open URL Redirection VulnerabilityKurt Seifried17 Feb 2012
--> Re: [oss-security] CubeCart 3.0.20 (3.0.x) and lower | Open URL Redirection VulnerabilityKurt Seifried18 Feb 2012
[oss-security] CVE-request: Webcalendar 1.2.4 location XSSHenri Salo11 Feb 2012
Re: [oss-security] CVE-request: Webcalendar 1.2.4 location XSSEitan Adler12 Feb 2012
--> Re: [oss-security] CVE-request: Webcalendar 1.2.4 location XSSHenri Salo12 Feb 2012
--> Re: [oss-security] CVE-request: Webcalendar 1.2.4 location XSSHenri Salo12 Feb 2012
--> Re: [oss-security] CVE-request: Webcalendar 1.2.4 location XSSKurt Seifried13 Feb 2012
[oss-security] [vs] CVE-2012-1037 GLPI <= 0.80.61 LFI/RFIEmilien Girault10 Feb 2012
[oss-security] imagemagick invalid validation DoS CVE-2012-0247 and CVE-2012-02478Henri Salo10 Feb 2012
Re: [oss-security] imagemagick invalid validation DoS CVE-2012-0247 and CVE-2012-02478Vincent Danen10 Feb 2012
--> Re: [oss-security] imagemagick invalid validation DoS CVE-2012-0247 and CVE-2012-02478Vincent Danen10 Feb 2012
[oss-security] CVE request: surfFlorian Weimer10 Feb 2012
Re: [oss-security] CVE request: surfKurt Seifried10 Feb 2012
--> Re: [oss-security] CVE request: surfFlorian Weimer10 Feb 2012
--> RE: [oss-security] CVE request: surfDaniel Suarez10 Feb 2012
--> Re: [oss-security] CVE request: surfKurt Seifried11 Feb 2012
[oss-security] MySQL 0-day - does it need a CVE?Kurt Seifried09 Feb 2012
Re: [oss-security] MySQL 0-day - does it need a CVE?Henri Salo09 Feb 2012
Re: [oss-security] MySQL 0-day - does it need a CVE?Henri Salo09 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Solar Designer09 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Yves-Alexis Perez09 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Kurt Seifried09 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Yves-Alexis Perez09 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Henri Salo10 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Solar Designer11 Feb 2012
Re: [oss-security] MySQL 0-day - does it need a CVE?Tomas Hoger24 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Kurt Seifried24 Feb 2012
--> Re: [oss-security] MySQL 0-day - does it need a CVE?Larry Stefonic24 Feb 2012
[oss-security] CVE request: apr - Hash DoS vulnerabilityMoritz Muehlenhoff08 Feb 2012
Re: [oss-security] CVE request: apr - Hash DoS vulnerabilityKurt Seifried09 Feb 2012
[oss-security] CVE request: Hash DoS vulnerability (ocert-2011-003)Kurt Seifried07 Feb 2012
Re: [oss-security] CVE request: Hash DoS vulnerability (ocert-2011-003)Kurt Seifried07 Feb 2012
[oss-security] CVE-2011-4325 Linux kernel: nfs: diotest4 from LTP crash clientSolar Designer06 Feb 2012
Re: [oss-security] CVE-2011-4325 Linux kernel: nfs: diotest4 from LTP crash clientPetr Matousek07 Feb 2012
--> Re: [oss-security] CVE-2011-4325 Linux kernel: nfs: diotest4 from LTP crash clientSolar Designer09 Feb 2012
Re: [oss-security] CVE-2011-4324 kernel: nfsv4: mknod(2) DoSSolar Designer06 Feb 2012
Re: [oss-security] CVE Request -- kernel: jbd/jbd2: invalid value of first log block leads to oopsSolar Designer06 Feb 2012
[oss-security] CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps accessSolar Designer06 Feb 2012
Re: [oss-security] CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps accessJason A. Donenfeld08 Feb 2012
--> [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Solar Designer08 Feb 2012
--> Re: [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Djalal Harouni08 Feb 2012
--> Re: [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Jason A. Donenfeld09 Feb 2012
--> Re: [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Jason A. Donenfeld09 Feb 2012
--> Re: [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Solar Designer09 Feb 2012
--> Re: [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Jason A. Donenfeld09 Feb 2012
--> Re: [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Solar Designer09 Feb 2012
--> Re: [oss-security] Linux procfs infoleaks via self-read by a SUID/SGID program (was: CVE-2011-3637 Linux kernel: proc: fix Oops on invalid /proc/<pid>/maps access)Djalal Harouni09 Feb 2012
[oss-security] CVE-request: Joomla! Security News 2012-02-03Henri Salo03 Feb 2012
Re: [oss-security] CVE-request: Joomla! Security News 2012-02-03Kurt Seifried03 Feb 2012
[oss-security] CVE Request (2002): Linux TCP stack could accept invalid TCP flag combinationsMarcus Meissner03 Feb 2012
Re: [oss-security] CVE Request (2002): Linux TCP stack could accept invalid TCP flag combinationsKurt Seifried03 Feb 2012
[oss-security] Adding Xen.org contact to linux-distros security listIan Campbell03 Feb 2012
Re: [oss-security] Adding Xen.org contact to linux-distros security listKurt Seifried03 Feb 2012
Re: [oss-security] Adding Xen.org contact to linux-distros security listSolar Designer03 Feb 2012
--> Re: [oss-security] Adding Xen.org contact to linux-distros security listIan Campbell05 Feb 2012
[oss-security] PHP remote code execution introduced via HashDoS fixTomas Hoger02 Feb 2012
Re: [oss-security] PHP remote code execution introduced via HashDoS fixSolar Designer02 Feb 2012
--> Re: [oss-security] PHP remote code execution introduced via HashDoS fixPierre Joye03 Feb 2012
[oss-security] Xen Security Advisory 6 (CVE-2012-0029) - HVM e1000, buffer overflowIan Jackson02 Feb 2012
[oss-security] CVE request: phpldapadmin "base" Cross-Site Scripting VulnerabilityAgostino Sarubbo02 Feb 2012
Re: [oss-security] CVE request: phpldapadmin "base" Cross-Site Scripting VulnerabilityKurt Seifried03 Feb 2012
Re: [oss-security] Subscribe to linux-distrosAgostino Sarubbo01 Feb 2012
Re: [oss-security] Subscribe to linux-distrosAlex Legler01 Feb 2012
--> Re: [oss-security] Subscribe to linux-distrosSolar Designer01 Feb 2012
--> Re: [oss-security] Subscribe to linux-distrosSolar Designer03 Feb 2012
Re: [oss-security] CVE Requests for FFmpeg 0.9.1Kurt Seifried01 Feb 2012
Re: [oss-security] CVE Requests for FFmpeg 0.9.1Kurt Seifried14 Feb 2012
Re: [oss-security] Mibew messenger multiple XSSKurt Seifried01 Feb 2012
[oss-security] XSS hiding CSRF (was: Re: [oss-security] Mibew messenger multiple XSS)Steven M. Christey01 Feb 2012
--> RE: [oss-security] XSS hiding CSRF (was: Re: [oss-security] Mibew messenger multiple XSS)Carsten Eiram02 Feb 2012
--> Re: [oss-security] XSS hiding CSRF (was: Re: [oss-security] Mibew messenger multiple XSS)Filippo Cavallarin02 Feb 2012
Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer01 Feb 2012
Re: [oss-security] distros & linux-distros embargo period and message formatMarc Deslauriers01 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer01 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatKurt Seifried02 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer02 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatKurt Seifried02 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatMarc Deslauriers02 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer02 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatKurt Seifried02 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer02 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatMichael Gilbert04 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer04 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatMichael Gilbert04 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer04 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatMichael Gilbert04 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer04 Feb 2012
Re: [oss-security] distros & linux-distros embargo period and message formatThomas Klausner01 Feb 2012
--> Re: [oss-security] distros & linux-distros embargo period and message formatSolar Designer01 Feb 2012
[oss-security] CVE Request (two ids) -- Xchat-WDK (prior 1499-4 [2012-01-18]) and Xchat-v2.8.6 on Maemo architecture -- Heap-based buffer overflow by processing UTF-8 line from server containing characters outside BMPJan Lieskovsky01 Feb 2012
[oss-security] Re: CVE Request (two ids) -- Xchat-WDK (prior 1499-4 [2012-01-18]) and Xchat-v2.8.6 on Maemo architecture -- Heap-based buffer overflow by processing UTF-8 line from server containing characters outside BMPBerke Viktor01 Feb 2012
--> Re: [oss-security] Re: CVE Request (two ids) -- Xchat-WDK (prior 1499-4 [2012-01-18]) and Xchat-v2.8.6 on Maemo architecture -- Heap-based buffer overflow by processing UTF-8 line from server containing characters outside BMPYves-Alexis Perez01 Feb 2012
Re: [oss-security] CVE Request (two ids) -- Xchat-WDK (prior 1499-4 [2012-01-18]) and Xchat-v2.8.6 on Maemo architecture -- Heap-based buffer overflow by processing UTF-8 line from server containing characters outside BMPKurt Seifried01 Feb 2012