Linux 2.4.24 Release Fixes Root Vulnerability
Grok Headline matches for Linux 2.4.24 Release Fixes Root Vulnerability
Linux 2.4.24 Release Fixes 2.4.23
Vulnerability
Linux 2.4.24 Release Fixes 2.4.23
Vulnerability
01/05/2004 12:17 PM[ GLSA 200409-18 ] cdrtools: Local root
vulnerability in cdrecord if set SUID
root
[ GLSA 200409-18 ] cdrtools: Local root
vulnerability in cdrecord if set SUID
root
09/14/2004 10:12 PMSune Kloppenborg Jeppesen (Sep 14 2004)
SUS 2.0.2 local root vulnerability
SUS 2.0.2 local root vulnerability
09/14/2004 12:49 PMLSS Security (Sep 14 2004)
Samba 3.x + kernel 2.6.x local root
vulnerability
Samba 3.x + kernel 2.6.x local root
vulnerability
02/10/2004 02:57 AMMichal Medvecky (Feb 09 2004)
Cyrus IMSP remote root vulnerability
Cyrus IMSP remote root vulnerability
12/15/2003 05:43 PMFelix Lindner (Dec 15 2003)
remote root exec vulnerability in omail
remote root exec vulnerability in omail
05/05/2004 12:29 PMThijs Dalhuijsen (May 04 2004)
Net(Free)BSD Systrace Local Root
Vulnerability
Net(Free)BSD Systrace Local Root
Vulnerability
05/12/2004 09:45 AM[ GLSA 200409-17 ] SUS: Local root
vulnerability
[ GLSA 200409-17 ] SUS: Local root
vulnerability
09/14/2004 04:59 PMSune Kloppenborg Jeppesen (Sep 14 2004)
Re: Samba 3.x + kernel 2.6.x local root
vulnerability
Re: Samba 3.x + kernel 2.6.x local root
vulnerability
02/10/2004 02:57 AMPatrick J. Volkerding (Feb 09 2004)
[ GLSA 200409-11 ] star: Suid root
vulnerability
[ GLSA 200409-11 ] star: Suid root
vulnerability
09/08/2004 12:58 PMKurt Lieber (Sep 07 2004)
MDKSA-2003:105 - Updated hylafax
packages fix remote root vulnerability
MDKSA-2003:105 - Updated hylafax
packages fix remote root vulnerability
11/11/2003 02:04 PMMandrake Linux Security Team (Nov 11 2003)
MDKSA-2004:001 - Updated kernel packages
fix local root vulnerability
MDKSA-2004:001 - Updated kernel packages
fix local root vulnerability
01/08/2004 08:28 PMMandrake Linux Security Team (Jan 08 2004)
MDKSA-2004:091 - Updated cdrecord
packages fix local root vulnerability
MDKSA-2004:091 - Updated cdrecord
packages fix local root vulnerability
09/08/2004 11:58 PMMandrake Linux Security Team (Sep 07 2004)
MDKSA-2003:095-1 - Updated proftpd
packages fix remote root vulnerability
MDKSA-2003:095-1 - Updated proftpd
packages fix remote root vulnerability
01/01/2004 03:52 PMMandrake Linux Security Team (Dec 31 2003)
Notes and Tips: 10.3.4 Fixes SSH
Vulnerability
Notes and Tips: 10.3.4 Fixes SSH
Vulnerability
06/01/2004 10:45 AMAccording to insecure.ws, Mac OS X 10.3.4 quietly fixed an SSH
vulnerability.
Macromedia Fixes JRun/Web Services
Vulnerability
Macromedia Fixes JRun/Web Services
Vulnerability
05/31/2002 08:11 AMCitadel/UX 6.20 fixes local permissions
vulnerability
Citadel/UX 6.20 fixes local permissions
vulnerability
04/12/2004 04:55 PMIO ERROR (Apr 12 2004)
Macromedia Fixes JRun/Web Services
Vulnerability
Macromedia Fixes JRun/Web Services
Vulnerability
05/30/2002 12:41 PMMac OS X security update fixes Safari
vulnerability
Mac OS X security update fixes Safari
vulnerability
03/22/2005 05:04 PMApple on Monday issued a security update for Mac OS X that fixes
several issues with the operating system, including a vulnerability in
the company's Web browser, Safari. The update also addresses several
other problems with the Mac OS X and Mac OS X Server.
SpamSieve 2.1.4 release fixes bugs
SpamSieve 2.1.4 release fixes bugs
04/16/2004 10:25 AMDeveloper
Michael Tsai
released
SpamSieve
2.1.3 on Tuesday, but problems that have cropped up since then
prompted him to make SpamSieve 2.1.4 available for download on
Thursday. The new version repairs a bug that caused the application to
crash when installing the Eudora plug-in in Eudora 6.0.x and fixes a
regression error that prevented SpamSieve from processing certain
messages. Tsai also added French localization and updated the
instructions for AOL users in light of the ISP's new support for IMAP
e-mail accounts.
Apple Mac OS X Security Update Fixes
iChat Vulnerability
Apple Mac OS X Security Update Fixes
iChat Vulnerability
09/18/2004 10:48 AMDirect and
Related Links for 'Apple Mac OS X Security Update Fixes iChat
Vulnerability'
“Critical: Highly critical Impact: System access Where: From
remote Solution Status: Vendor Patch OS: Apple Macintosh OS X Apple
has issued a security update for Mac OS X iChat client. This fixes a
vulnerability, which can be exploited by malicious people to
compromise a vulnerable system. The problem is that links aren’t
properly validated before being opened. This can be exploited to
launch programs by embedding references to local resources. The
vulnerability has been reported…
Nokia IPSO Script Injection
Vulnerability leads to Passive Remote
Root, via Network Voyager
Nokia IPSO Script Injection
Vulnerability leads to Passive Remote
Root, via Network Voyager
11/12/2003 01:14 PMFishNet Security CSIRT (Nov 11 2003)
IRIX syssgi system call vulnerability
and other security fixes
IRIX syssgi system call vulnerability
and other security fixes
06/14/2004 09:13 PMSGI Security Coordinator (Jun 14 2004)
[RHSA-2004:175-01] Updated utempter
package fixes vulnerability
[RHSA-2004:175-01] Updated utempter
package fixes vulnerability
04/30/2004 07:19 PMbugzilla_at_redhat.com (Apr 30 2004)
[SECURITY] [DSA 529-1] New
netkit-telnet-ssl package fixes format
string vulnerability
[SECURITY] [DSA 529-1] New
netkit-telnet-ssl package fixes format
string vulnerability
07/19/2004 09:50 AMMatt Zimmerman (Jul 18 2004)
MDKSA-2004:084 - Updated spamassassin
packages fixes possible malformed
message vulnerability
MDKSA-2004:084 - Updated spamassassin
packages fixes possible malformed
message vulnerability
08/19/2004 05:25 PMMandrake Linux Security Team (Aug 18 2004)
[RHSA-2003:392-00] Updated 2.4 kernel
fixes privilege escalation security
vulnerability
[RHSA-2003:392-00] Updated 2.4 kernel
fixes privilege escalation security
vulnerability
12/02/2003 12:12 PMbugzilla_at_redhat.com (Dec 01 2003)
[RHSA-2004:177-01] An updated X-Chat
package fixes vulnerability in Socks-5
proxy
[RHSA-2004:177-01] An updated X-Chat
package fixes vulnerability in Socks-5
proxy
04/30/2004 03:07 PMbugzilla_at_redhat.com (Apr 30 2004)
MDKSA-2004:043 - Updated apache2
packages fixes a denial of service
vulnerability in mod_ssl
MDKSA-2004:043 - Updated apache2
packages fixes a denial of service
vulnerability in mod_ssl
05/11/2004 06:04 PMMandrake Linux Security Team (May 10 2004)
local root security bug in linux >=
2.4.6 <= 2.4.30-rc1 and 2.6.x.y <=
2.6.11.5
local root security bug in linux >=
2.4.6 <= 2.4.30-rc1 and 2.6.x.y <=
2.6.11.5
03/28/2005 07:59 PMadvisories (Mar 27 2005)
MDKSA-2004:052 - Updated kolab-server
package fixes world readable file
vulnerability
MDKSA-2004:052 - Updated kolab-server
package fixes world readable file
vulnerability
05/27/2004 07:39 PMMandrake Linux Security Team (May 26 2004)
[SECURITY] [DSA 413-1] New Linux 2.4.18
packages fix locate root exploit
[SECURITY] [DSA 413-1] New Linux 2.4.18
packages fix locate root exploit
01/06/2004 01:03 PMMartin Schulze (Jan 06 2004)
[SECURITY] [DSA 495-1] New Linux 2.4.16
packages fix local root exploit (arm)
[SECURITY] [DSA 495-1] New Linux 2.4.16
packages fix local root exploit (arm)
04/26/2004 07:06 PMMartin Schulze (Apr 26 2004)
[SECURITY] [DSA 439-1] New Linux 2.4.16
packages fix several local root exploits
(arm)
[SECURITY] [DSA 439-1] New Linux 2.4.16
packages fix several local root exploits
(arm)
02/18/2004 01:32 PMMartin Schulze (Feb 18 2004)
Linux Kernel Bluetooth Local Root
(Exploit)
Linux Kernel Bluetooth Local Root
(Exploit)
04/11/2005 01:40 PMAddict3d.org Apr 11 2005 5:19PM GMT
[SECURITY] [DSA 456-1] New Linux 2.2.19
packages fix local root exploit (arm)
[SECURITY] [DSA 456-1] New Linux 2.2.19
packages fix local root exploit (arm)
03/08/2004 11:20 PMMartin Schulze (Mar 05 2004)
[SECURITY] [DSA 480-1] New Linux 2.4.17
and 2.4.18 packages fix local root
exploit (hppa)
[SECURITY] [DSA 480-1] New Linux 2.4.17
and 2.4.18 packages fix local root
exploit (hppa)
04/14/2004 03:47 PMMartin Schulze (Apr 14 2004)
[SECURITY] [DSA 479-2] New Linux 2.4.18
packages fix local root exploit (i386)
[SECURITY] [DSA 479-2] New Linux 2.4.18
packages fix local root exploit (i386)
04/15/2004 05:14 PMMartin Schulze (Apr 14 2004)
[SECURITY] [DSA 514-1] New Linux 2.2.20
packages fix local root exploit (sparc)
[SECURITY] [DSA 514-1] New Linux 2.2.20
packages fix local root exploit (sparc)
06/04/2004 08:43 PMMartin Schulze (Jun 04 2004)
Grok Description matches for Linux 2.4.24 Release Fixes Root Vulnerability
GrokA matches for Linux 2.4.24 Release Fixes Root Vulnerability
Trouble in the Kernel, VMware, and
PostgreSQL
Trouble in the Kernel, VMware, and
PostgreSQL
03/14/2005 05:29 PMIn this weeks Security Alerts, we look at problems in the Linux
kernel, VMware, PostgreSQL, Squid, MySQL, mailman, Apple OSX HFS+,
movemail with GNU Emacs or XEmancs, KStars, typespeed, awstats, and
synaesthesia.
VMWare Upgrade Brings 64-Bit Support
VMWare Upgrade Brings 64-Bit Support
04/11/2005 07:36 PMVMware has put the finishing touches on the fifth generation of its
desktop virtualization software. VMware Workstation 5 includes new
features that bring improved collaboration and networking, better
performance and surer security, along with enhanced cloning
capabilities and Microsoft Virtual PC compatibility.
Security Alerts: Trouble in the Kernel,
VMware, and PostgreSQL
Security Alerts: Trouble in the Kernel,
VMware, and PostgreSQL
03/14/2005 05:29 PM
Noel Davis looks at problems in the Linux kernel, VMware,
PostgreSQL, Squid, MySQL, codemailman/code, Apple OSX HFS+,
codemovemail/code with GNU Emacs or XEmancs, KStars,
codetypespeed/code, codeawstats/code, and codesynaesthesia/code.
EMC acquires server specialist VMware
EMC acquires server specialist VMware
12/15/2003 05:43 PMZDNet Dec 15 2003 5:03PM ET
EMC eyes the server with $635 million
VMware buy
EMC eyes the server with $635 million
VMware buy
12/15/2003 05:46 PMWho knew?
EMC eyes the server with $635 million
VMware buy.
EMC eyes the server with $635 million
VMware buy.
12/15/2003 11:35 PMThe Register:
EMC eyes the
server with $635 million VMware buy.Next-gen VMware software to get memory
boost
Next-gen VMware software to get memory
boost
12/22/2004 01:07 AMVMware creates PC software condom
VMware creates PC software condom
09/20/2004 02:29 PMACE software container
VMware Updates Desktop Virtualization
Software
VMware Updates Desktop Virtualization
Software
04/11/2005 11:13 PMBy letting users build a library of virtual machines that mimic
production environments, VMware Workstation 5 aims to provide greater
flexibility to enterprises developing and testing multitiered,
browser-based applications.
Dell to support EMC's VMware software
Dell to support EMC's VMware software
03/08/2004 11:22 PMMove helps PC seller compete with HP, IBM
Re: VMWare GSX Server Authentication
Server Buffer Overflow Vulnerability -
Update
Re: VMWare GSX Server Authentication
Server Buffer Overflow Vulnerability -
Update
11/17/2003 05:35 PMVMware (Nov 17 2003)
VMWare GSX Server Authentication Server
Buffer Overflow Vulnerability - Update
VMWare GSX Server Authentication Server
Buffer Overflow Vulnerability - Update
10/31/2003 12:49 PMDarryl Swofford (Oct 31 2003)
VMware GSX Server and ESX Server OpenSSL
vulnerability patches
VMware GSX Server and ESX Server OpenSSL
vulnerability patches
10/31/2003 03:01 PMVMware (Oct 31 2003)
Review: VMware 4.5.2
Review: VMware 4.5.2
09/15/2004 01:47 PMVirtual machine software allows you to run one operating system (and
its applications) from within the environment of another. For years
the most recognized name in virtual machine software for the x86
architecture has been VMware, whose eponymous industry-leading product
supports a wide variety of guest operating systems. Recently EMC Corp.
bought VMware, and has since released VMware Workstation 4.5 for $199.
The most recent release is 4.5.2, which adds 64-bit host operating
system support. There isn't much that VMware Workstation can't do,
except perhaps achieve the level of performance that a genuine
installation of the guest operating system enjoys.
EMC To Acquire VMware
EMC To Acquire VMware
12/15/2003 06:55 PMkma writes "According to The Register, virtual machine software maker
(and my employer) VMware Inc. will be acquired by storage giant EMC,
pending the usual ...
VMWare Workstation 4.5.2
VMWare Workstation 4.5.2
07/19/2004 03:01 AMReview: Do you have a split personality when it comes to operating
systems? VMWare could be the answer to your prayers.
EMC Acquires VMWare
EMC Acquires VMWare
01/05/2004 09:09 PMVMWare 4.5 Review
VMWare 4.5 Review
06/05/2004 05:50 AMVMware has ACE up its Sleeve
VMware has ACE up its Sleeve
09/21/2004 02:42 PMVMware has announced a beta release of a new product dubbed VMware ACE
that enables desktop IT managers to apply enterprise IT policies to
virtual machines that contain data, applications and operating
systems. VMware claims that ACE creates an isolated PC environment.
VMWare 5.0.0 (Default branch)
VMWare 5.0.0 (Default branch)
04/12/2005 05:20 PM
VMWare allows you to run 'virtual machines' inside Linux. It is not an
emulator. It provides a virtual computer within Linux which can boot
whichever OS you decide to put on the filesystem image that is used as
a harddrive. It will run DOS 6.22, Win 3.1, Win9x, WinNT/2000/XP/2003,
Linux, Novell, and more. The only main requirement is a 400 MHz or
better machine, along with lots of RAM (128M minimum, 256M
recommended).
Changes:
Team features were added. Multiple snapshot and snapshot management
capabilities as well as cloning functionality were added. Performance
was improved, especially for multiple virtual machines and networking
workloads, for suspend and resume, for snapshot operations, and for
shared folders and sound. Host and guest OS support was expanded,
especially for 64-bit OSs. Support for isochronous USB input devices
was added. A command line interface enabling the automation of certain
manual steps was added. A movie of the virtual machine can now be
recorded. Further enhancements were made.
IBM looks to VMware, Microsoft for
virtualization
IBM looks to VMware, Microsoft for
virtualization
05/19/2004 04:32 PMIBM plans to use software from companies such as VMware Inc. and
possibly Microsoft to provide a new range of virtualization software
and technologies for its Intel-based xSeries products.
IBM Bundles VMware in BladeCenter
IBM Bundles VMware in BladeCenter
03/23/2005 03:22 PMWeb Host Industry Review Mar 23 2005 6:02PM GMT
VMware Introduces Workstation 4.5
VMware Introduces Workstation 4.5
04/09/2004 03:59 PMEMC to acquire VMware for $635M
EMC to acquire VMware for $635M
12/16/2003 12:53 AMStorage vendor said the acquisition will help lower costs and simplify
operations for its customers through virtualization technologies.
VMware pilots 64-bit virtualisation
VMware pilots 64-bit virtualisation
04/12/2005 06:49 PMZDNet UK Apr 12 2005 11:04PM GMT
IBM Blade Servers to Come With VMware
IBM Blade Servers to Come With VMware
03/28/2005 03:45 PMTechnocrat.net Mar 28 2005 8:18PM GMT
VMWare locks down Windows
VMWare locks down Windows
09/20/2004 04:34 AMZDNet UK Sep 20 2004 7:26AM GMT
EMC Buys VMWare; Forget The IPO
EMC Buys VMWare; Forget The IPO
12/15/2003 06:53 PMEMC is going acquisition crazy. They recently
bought
Documentum and Legato, and today made the somewhat surprising
announcement that
they
are buying VMWare. It had seemed that the earlier deals were sort
of desperation plays between large companies who were finding their
business models smoked out from under them. This deal, however, is
quite a bit different. VMWare is a Silicon Valley darling that was
expected to go public early next year - and was considered one of the
bright spots for the potential IPO class of 2004. Apparently, once
the offer was on the table, they believed it was better to take what
was in front of them. It will be interesting to see what EMC does
with VMWare - as it's a bit far out of their usual business areas.
However, if anything, this is a bad sign for those who believe that
the IPO market is back.
Linux VMware Blues
Linux VMware Blues
09/15/2004 01:49 AM
If you are running a Linux guest under VMware like me and my blog's
hyperlinks are
green instead of blue, turn on subpixel font rendering to get the
blues.
FYI, I am running RedHat 9 under VMware running on XP, primarily
for development and
testing. For example, I needed to write a milter so I
initially wrote a C++
version using Eclipse running under RH9 VMware guest. The
milter was talking
to sendmail server running inside the same virtual machine.
Eclipse CDT running
inside the VM was rather difficult to work with so rewrote the
milter in pure Java
using Eclipse running on XP.
To debug, I configured the sendmail server running inside the
VM to invoke the
pure Java milter running under Eclipse debugger outside the VM.Then
I
sent both plain text and multipart MIME messages using Evolution,
running inside the
VM, as well as Outlook, running on another machine, to the sendmail
server inside
the VM which in turn invoked the milter running outside the VM.
While all this might be confusing to some, it worked amazingly
well.

Brief: EMC completes VMware deal
Brief: EMC completes VMware deal
01/09/2004 11:16 PMThe acquisition, announced last month, gives EMC access to a VMware's
virtualization technology, which allows users to run multiple
operating systems on Intel-based servers.
Linux 2.4.24 Release Fixes Root Vulnerability