I was recently taking a look at the state of play regarding the security of
POSIX runtime linkers and was pointed at the QNX Neutrino RTOS to take a look.
In doing so I noticed a problem relating to the way that it handles
LD_DEBUG_OUTPUT which allows for the creation or overwriting of an
Another 22nd! How spooky is that? If I were a gambling man, I'd be
betting on horse number 22 coming in 2nd in the 2nd race... or something
and while we're on the subject of unlikely things, who says there's no
such thing as free beer? Yes, this month we've found not one but two
===
Ubuntu Security Notice USN-1087-1March 11, 2011
libvpx vulnerability
CVE-2010-4489
===
A security issue affects the following Ubuntu releases:
Ubuntu 10.10
This