LINUX TODAY SECURITY LETTER FOR MAY 13, 2000
Latest Security News for the Linux and Open Source Community.
___________________________ Sponsors ________________________
This newsletter sponsored by: TurboLinux
_____________________________________________________________
------------------------------------------------------------------
TODAY'S LINUX SECURITY NEWS:
------------------------------------------------------------------
/-------------------------------------------------------------------\
TurboLinux Server 6.0 is a high performance backend server for
business workgroups in the enterprise. TurboLinux Server includes
robust e-commerce software for business-to-business transactions.
Server 6.0 includes Apache, Tallyman, and OpenMerchant.
TurboLinux. High Perfomance Linux!
http://www.turbolinux.com/products/tls/server.html
\--------------------------------------------------------------adv.-/
CERT.ORG: CERT ADVISORY CA-2000-05 NETSCAPE NAVIGATOR IMPROPERLY
VALIDATES SSL SESSIONS
"Netscape Navigator correctly checks the certificate
conditions (*) at the beginning
of a SSL session it establishes with a certain web server.
The flaw is, while this SSL session is still alive, all HTTPS
connections to *THAT SERVER'S IP ADDRESS* are assumed to be a
part of this session (and therefore
certificate conditions are not checked again)."
COMPLETE STORY:
http://www.cert.org/advisories/CA-2000-05.html
------------------------------------------------------------------
Visit the other sites in the Linux Channel:
Linux Planet <http://www.linuxplanet.com>,
LinuxStart <http://www.linuxstart.com>,
Linux Central <http://www.linuxcentral.com>,
and JustLinux <http://www.justlinux.com>.
Also, check out the ISP-Linux Moderated Digest
<http://isp-lists.isp-planet.com/moderated/isp-linux/>.
------------------------------------------------------------------
To advertise on our newsletters and 125+ more at internet.com,
please contact Frank Fazio: mailto:[EMAIL PROTECTED]
Director, Inside Sales (203)-662-2997
------------------------------------------------------------------
Copyright 2000 internet.com Corp. <http://www.internet.com>.
--------------------------------------------------------------
--------------------------------------------------------------------------
Utk berhenti langganan, kirim email ke [EMAIL PROTECTED]
Informasi arsip di http://www.linux.or.id/milis.php3
Pengelola dapat dihubungi lewat [EMAIL PROTECTED]