Thursday Security Updates

Fedora 8 has updatedphpMyAdmin (code execution vulnerability),phpMyAdmin (cross-site scripting vulnerability),rkhunter (insecure temp file)andviewvc (ignore user-provided MIME types).

Fedora 9 has updatedinitscripts (local system file removal vulnerability),phpMyAdmin (code execution vulnerability),phpMyAdmin (cross-site scripting vulnerability),rkhunter (insecure temp file)andviewvc (ignore user-provided MIME types).

Mandriva has updatedblender (multiple vulnerabilities).

Red Hat Enterprise Linux has updatedkernel (multiple vulnerabilities).

More: continued here

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Netvouz
  • DZone
  • ThisNext
  • MisterWong
  • Wists
  • Technorati

Related News


  • Google Hits It Out of the Park


  • On another day of wild swings – when the stock market – as a proxy for the global economy – badly needed a comfort blanket – Google gave it one. It came in Thursday with Q3 net earnings of $1.56 billion, or $4.92 a share (non-GAAP), up 26%, on revenue of $4.04 billion, up 31%, after subtracting TAC. Analysts were only expecting $4.75. US paid clicks were up 18%. After scrapping as low as $309 Thursday – because of worries about advertising in a recession – it shot up to $376 in after-hours trading.read more


  • An IT Admin’s Dream Come True: The Promise of Desktop Virtualization


  • Join MokaFive co-founder and CTO, John Whaley, as he discusses desktop virtualization as a potential dream-come-true for IT administrators faced with demanding users and impending disasters. Whaley will cover how desktop virtualization provides solutions to accommodate a mobile workforce including secure remote access, ability to work online or offline, running complete operating systems and applications off a USB flash drive or iPod, and centrally-managed updates delivered simultaneously. Whaley will also talk about key security benefits to building and deploying virtual desktops including malware immunity, backing up to the cloud and automatic rejuvenation.read more


  • Facing Extradition, British Hacker Makes Last Stand


  • After eight years of litigation, accused British hacker Gary McKinnon is set to be extradited to the United States to stand trial. Shortly after the September 11 attacks on the World Trade Center and the Pentagon, computer break-ins at more than 90 U.S. military and governmental agencies caused severe security compromises and data destruction. In 2002, U.S. investigators reportedly tracked the software used for the attacks to an e-mail account belong to McKinnon's girlfriend. Since that time, the United States has sought McKinnon's extradition. On Thursday, the European Court of Human Rights -- where appeals had escalated the case -- finally gave the OK to send McKinnon to the United States. But in what some see as a last-ditch effort to keep McKinnon on British soil, reports are circulating that the 42-year-old has just been diagnosed with Aspberger's syndrome. Aspberger's is often described as a form of high-functioning autism. In itself, this diagnosis wouldn't prevent his trial in the United States, but British law may see things differently. The CrimeMcKinnon has already admitted publicly that he broke into U.S. government computer systems, but he maintains he did no damage. Justice Department officials charge, however, that he compromised and deleted records at a key naval-operations center in New Jersey and repeatedly crashed systems belonging to NASA and the Pentagon. McKinnon claims he was snooping for evidence of a UFO cover-up by the U.S. government.Allegedly, McKinnon posted the following message on a military computer system during his months-long spree: "U.S. foreign policy is akin to government-sponsored terrorism these days ... It was not a mistake that there was a huge security stand down on September 11 last year ... I am SOLO. I will continue to disrupt at the highest levels."McKinnon and his lawyers rejected several plea offers by the...


  • SmartRSS Plugin


  • New Version Updates 04.02.2008 - added CURL support for the feeds retrieval New Version Updates 11.10.2007 - added import feed posts minimum character limit - added import feed post limit - compatibility with the latest version of wordpress 2.3 - added post filter for removing unwanted advertising imported from feeds SmartRSS Plugin is a Wordpress plugin Transform your blog into an automated posting tool by syndicating with multiple RSS feed sources! Features: - administration tool for managing rss feeds - each feed can be assigned to a specific category - after importing the feed, you may display related feeds by using the provided code below - cron job for importing feeds as a scheduled period Package contains: - smart_rss.php file - the backend plugin - wp_smartrss.php - the cron job file which does the import Installation: - upload files smart_rss.php to the wp-content/plugins directory of your wordpress installation - go into your Plugins administrator tab and activate it - you will be able to access the plugin backend by going to the Options tab -> the SmartRss subtab - upload wp_smartrss.php to your wordpress home path, for security reasons i would suggest you rename this file to something you like - to start importing fields go to http://sitename/wp_smartrss.php url, if you would like to do this automatically you can setup a cron job to run that file - to setup the cron job use a code similar to this: "nice --adjustment=19 /usr/bin/php /$full-path-to-the-file/wp_smartrss.php" or "nice --adjustment=19 /usr/bin/php /$full-path-to-the-file/your_file_name.php" - if you would like to put this file somewhere else on the server, you need to edit the line from the file wp_smartrss.php containing require_once('wp-config.php'); and replace it with something like like require_once('/$full-path-to-wordpress/wp-config.php'); where $full-path-to-wordpress is the full path to your wordprss installation folder Related Articles Display - to display the related articles add this code in your single.php page from your template directory: < ?php related_posts(5, 10, '<li><b style="font-size:14px;">', '</b<', '', '', false, false); ?> Function parameters: smartrss_related_posts(limit, len, before_title, after_title , before_post, after_post , show_pass_post, show_limit) - limit = the related posts limit to be displayed - len = if show_limitis set then it will limit the post size to $len words - before_title = html code to add before post title -after_title = html code to add after post title -before_post = html code to add before post -after_post =html code to add after post -show_past_post = include posts that are password protected -show_limit = limit the post text to $len words Demo link: http://www.devplug.net Download it here now Happy syndication:)!!!


  • Sprint Will Launch 4G WiMAX with Localized Features


  • In advance of its WiMAX rollout this fall, Sprint announced Thursday a lineup of mobile partners to localize its customer's 4G experience. In what the company calls "geobrowsing," XOHM users will get local news, weather and many other localized networking features delivered to their laptops and mobile devices.The WiMAX service is expected to kick off in Baltimore in September, with Chicago and Washington, D.C., to follow before the end of the year.Location, Location, LocationGPS in the XOHM system continually updates the user's position and feeds it to back-end applications. This feature is added by California-based Open Wave. Using uLocate as the foundation for the service, Sprint has tested and implemented a number of applications before rollout.The partnership between Sprint and uLocate includes building the entire XOHM localized experience, with APIs provided to third-party developers for their applications. Some big names will be part of the launch.Yelp will provide local business news all the way through local restaurant reviews. Eventful service will not only list events for XOHM users but will also map the locations. NAVTEQ will stream up-to-the-minute local traffic information, while Google will serve up localized searching and map features.John Polivka, spokesperson at Sprint, explained the difference between the XOHM user experience and using the Internet. "With Internet access you could go to each vendor now as a separate interaction; but with XOHM, the services are aggregated into a service package that correlates them due to the intelligence in the network; for example, plotting friend locations on a map, identifying a restaurant or entertainment venue from local search, and sharing plans to convene with the benefit of weather, traffic or ticket-purchase convenience."XOHM users will have standard Internet as well. Polivka noted that there is no charge for third-party developers to become part of the program, but there would be...


    Leave a Reply

    You must be logged in to post a comment.