Showing headlines posted by dave

« Previous ( 1 ... 382 383 384 385 386 387 388 389 390 391 392 ... 595 ) Next »

Will Mozilla Fly?

  • IT-Analysis; By Robin Bloor (Posted by dave on Apr 19, 2004 6:04 AM EDT)
  • Story Type: News Story; Groups: Mozilla
Mozilla, in case you didn't know, is a project to build an open source web browser (Firefox) and email suite (Thunderbird). I had cause to use it recently when I ran into a little browser plug-in (from a security company called CoreStreet) that plays back to you the name of the web site that you are on. It's a neat little applet that CoreStreet intends to distribute for free to assist web users in seeing through some of the Phishing scams that are currently in play.

Operating systems can take some funny turns

  • Network World on Linux; By Dave Kearns (Posted by dave on Apr 19, 2004 6:04 AM EDT)
  • Story Type: News Story
There are similarities among all these operating systems but when you've used one relatively exclusively for many years, you become conditioned to look for certain signs that indicate potential problems and instinctively react to those signs.

Green Hills Software CEO Responds to Linux Security Controversy

FAA Flight-safety Certified Operating Systems Deliver the Reliability and Security Required for Defense Systems; Linux Does Not

Gentoo alert: Multiple new security vulnerabilities in monit

  • Mailing list; By Kurt Lieber <klieber@gentoo.org> (Posted by dave on Apr 19, 2004 6:02 AM EDT)
  • Story Type: Security; Groups: Gentoo
Two new vulnerabilities have been found in the HTTP interface of monit, possibly leading to denial of service or execution of arbitrary code.

Gentoo alert: XChat 2.0.x SOCKS5 Vulnerability

  • Mailing list; By Kurt Lieber <klieber@gentoo.org> (Posted by dave on Apr 19, 2004 6:02 AM EDT)
  • Story Type: Security; Groups: Gentoo
XChat is vulnerable to a stack overflow that may allow a remote attacker to run arbitrary code.

Gentoo alert: Multiple format string vulnerabilities in cadaver

  • Mailing list; By Kurt Lieber <klieber@gentoo.org> (Posted by dave on Apr 19, 2004 6:02 AM EDT)
  • Story Type: Security; Groups: Gentoo
There are multiple format string vulnerabilities in the neon library used in cadaver, possibly leading to execution of arbitrary code when connected to a malicious server.

No Starch Press Releases the Official Gnome 2 Developer's Guide

An increasing number of developers worldwide are interested in GNOME, the user-friendly GUI and desktop development platform for UNIX and Linux. However, the development documentation for GNOME, while voluminous, is intimidating to a developer not wholly familiar with the GNOME development process. To help rectify this situation, No Starch Press and the GNOME Foundation announce the release of The Official GNOME 2 Developers Guide, the first English-language book about developing with GNOME 2.

Linux's Achilles' Heel

  • Information Week; By Fred Langa (Posted by dave on Apr 18, 2004 5:08 AM EDT)
  • Story Type: News Story
New Linux distros still fail a task that Windows 95 -- yes, 95! -- easily handles, namely working with mainstream sound cards. That sends the cost of commercial, paid versions of Linux dramatically higher.

Debian alert: New Zope packages fix arbitrary code execution

  • Mailing list; By joey@infodrom.org (Martin Schulze) (Posted by dave on Apr 17, 2004 12:49 PM EDT)
  • Story Type: Security; Groups: Debian
A vulnerability has been discovered in the index support of the ZCatalog plug-in in Zope, an open source web application server. A flaw in the security settings of ZCatalog allows anonymous users to call arbitrary methods of catalog indexes. The vulnerability also allows untrusted code to do the same.

Debian alert: New Linux 2.4.19 packages fix local root exploit (mips)

  • Mailing list; By joey@infodrom.org (Martin Schulze) (Posted by dave on Apr 17, 2004 12:49 PM EDT)
  • Story Type: Security; Groups: Debian
Several serious problems have been discovered in the Linux kernel. This update takes care of Linux 2.4.17 for the MIPS architecture.

Slackware alert: tcpdump denial of service (SSA:2004-108-01)

  • Mailing list; By Slackware Security Team <security@slackware.com> (Posted by dave on Apr 17, 2004 12:49 PM EDT)
  • Story Type: Security; Groups: Slackware
Upgraded tcpdump packages are available for Slackware 8.1, 9.0, 9.1, and -current to fix denial-of-service issues. Sites using tcpdump should upgrade to the new packages.

Software-only video player runs on Linux x86

  • LinuxDevices (Posted by dave on Apr 17, 2004 7:13 AM EDT)
  • Story Type: News Story
Media Excel is shipping a real-time software decoder and streaming package for Linux on x86. SoftStream Player supports MPEG-2, MPEG-4, and H.264 compressed video, and targets Celeron, VIA C3, and Transmeta Crusoe based devices powerful enough to do without a hardware decoder.

Debian alert: New Linux 2.4.17 packages fix local root exploit (mips+mipsel)

  • Mailing list; By joey@infodrom.org (Martin Schulze) (Posted by dave on Apr 17, 2004 7:12 AM EDT)
  • Story Type: Security; Groups: Debian
Several serious problems have been discovered in the Linux kernel. This update takes care of Linux 2.4.17 for the PowerPC/apus and S/390 architectures.

BayStar seeks to retrieve investment in SCO

  • CNET News.com; By Stephen Shankland (Posted by dave on Apr 17, 2004 6:19 AM EDT)
  • Groups: SCO; Story Type: News Story
BayStar Capital is seeking to get back the $20 million it invested in the SCO Group, raising issues for SCO's expensive and controversial legal campaign that argues Linux infringes its Unix copyrights.

Debian alert: New cvs packages fix multiple vulnerabilities

  • Mailing list; By Matt Zimmerman <mdz@debian.org> (Posted by dave on Apr 17, 2004 6:17 AM EDT)
  • Story Type: Security; Groups: Debian
Two vulnerabilities have been discovered and fixed in CVS.

Debian alert: New neon packages fix format string vulnerabilities

  • Mailing list; By Matt Zimmerman <mdz@debian.org> (Posted by dave on Apr 17, 2004 6:17 AM EDT)
  • Story Type: Security; Groups: Debian
Multiple format string vulnerabilities were discovered in neon, an HTTP and WebDAV client library. These vulnerabilities could potentially be exploited by a malicious WebDAV server to execute arbitrary code with the privileges of the process using libneon.

Debian alert: New perl packages fix information leak in suidperl

  • Mailing list; By Matt Zimmerman <mdz@debian.org> (Posted by dave on Apr 17, 2004 6:17 AM EDT)
  • Story Type: Security; Groups: Debian
Paul Szabo discovered a number of similar bugs in suidperl, a helper program to run perl scripts with setuid privileges. By exploiting these bugs, an attacker could abuse suidperl to discover information about files (such as testing for their existence and some of their permissions) that should not be accessible to unprivileged users.

Debian alert: New logcheck packages fix insecure temporary directory

  • Mailing list; By Matt Zimmerman <mdz@debian.org> (Posted by dave on Apr 17, 2004 6:17 AM EDT)
  • Story Type: Security; Groups: Debian
Christian Jaeger reported a bug in logcheck which could potentially be exploited by a local user to overwrite files with root privileges. logcheck utilized a temporary directory under /var/tmp without taking security precautions. While this directory is created when logcheck is installed, and while it exists there is no vulnerability, if at any time this directory is removed, the potential for exploitation exists.

Baystar hits SCO with call for loan repayment

  • Salt Lake Tribune; By Bob Mims (Posted by dave on Apr 17, 2004 6:16 AM EDT)
  • Story Type: News Story; Groups: SCO
In a potentially crippling blow to The SCO Group, BayStar Capital is calling due its $20 million loan to the controversial Utah software company. Stunned SCO officials were scrambling Friday to get BayStar's explanation for the decision, declared in a letter to Lindon-based SCO late Thursday.

Novell's Linux gamble is paying off

  • Salt Lake Tribune; By Bob Mims (Posted by dave on Apr 17, 2004 6:16 AM EDT)
  • Story Type: News Story; Groups: Novell
Underscoring Novell's commitment to the Linux operating system, the company's chief financial officer on Friday hinted at further acquisitions.

« Previous ( 1 ... 382 383 384 385 386 387 388 389 390 391 392 ... 595 ) Next »