Linux Today SECURITY LETTER FOR MAY 25, 2000

Latest Security News for the Linux and Open Source Community.

___________________________ Sponsors ________________________________

This newsletter sponsored by:  TechRepublic
_____________________________________________________________________

------------------------------------------------------------------
------------------------------------------------------------------

TODAY'S LINUX SECURITY NEWS:

------------------------------------------------------------------
WALL ST. JOURNAL: LOVE BUG PROMPTS SECURITY EXPERTS TO POKE AT
MICROSOFT'S WEAK POINTS

"Microsoft has taken steps to make Outlook more secure,
but many security experts say the fact that the ubiquitous e-mail system 
was so vulnerable is evidence of fundamental flaws in many Microsoft products."

COMPLETE STORY:
http://dowjones.wsj.com/n/SB959164703543123536-d-main-c1.html

------------------------------------------------------------------
LWN: LINUX-MANDRAKE SECURITY UPDATE - PACKAGE: DUMP

"Dump may cause security problem due to a buffer overflow. This
package removes the set gid root on the dump exec file."

COMPLETE STORY:
http://lwn.net/daily/lm-dump.html

------------------------------------------------------------------
LWN: LINUX-MANDRAKE SECURITY UPDATE - PACKAGE: XEMACS

"Under some circumstances, users are able to snoop on other
users' keystrokes. This is a serious problems if you use modules
that require e.g. input of passwords, such as MailCrypt."

COMPLETE STORY:
http://lwn.net/daily/mand-xemacs.html

/-------------------------------------------------------------------\

FREE WEB RESOURCE FOR IT PROS -- JOIN TECHREPUBLIC!
Your FREE TechRepublic Passport gives you access to all content at 
TechRepublic.com. Plus, customize the site to your IT specialty! 
Got questions about Net Security?  Find answers about that--and more! 
http://www.enlist.com/cgi-bin/re/techrepublic_com769 

\--------------------------------------------------------------adv.-/

------------------------------------------------------------------
RED HAT SECURITY ADVISORY: UPDATED MAILMAN PACKAGES ARE
AVAILABLE.

"New mailman packages are available which close security holes
present in earlier versions of mailman.  All sites using the
mailman mailing list management software should upgrade."

COMPLETE STORY:
http://linuxtoday.com/story.php3?sn=22346

------------------------------------------------------------------
CALDERA SYSTEMS, SECURITY ADVISORY: XEMACS

"Under some circumstances, users are able to snoop on other
users' keystrokes. This is a serious problems if you use
modules that require e.g. input of passwords, such as
MailCrypt."

COMPLETE STORY:
http://linuxtoday.com/story.php3?sn=22349

------------------------------------------------------------------
CALDERA SYSTEMS SECURITY ADVISORY: DOS ATTACK AGAINST X SERVER

"A bug was discovered in the X server's authentication code that
allows a remote user to completely hang the victim's X server
at least for a considerable amount of time, and eventually crash
it. While the X server is frozen, it is not even possible to
switch to a different console."

COMPLETE STORY:
http://linuxtoday.com/story.php3?sn=22369


------------------------------------------------------------------
Visit the other sites in the Linux Channel: 
Linux Planet <http://www.linuxplanet.com>, 
LinuxStart <http://www.linuxstart.com>,
Linux Central <http://www.linuxcentral.com>,
and JustLinux <http://www.justlinux.com>. 
Also,  check out the ISP-Linux Moderated Digest 
<http://isp-lists.isp-planet.com/moderated/isp-linux/>.
------------------------------------------------------------------
To advertise on our newsletters and 125+ more at internet.com,
please contact Frank Fazio: mailto:[EMAIL PROTECTED] 
Director, Inside Sales (203)-662-2997
------------------------------------------------------------------
Copyright 2000 internet.com Corp. <http://www.internet.com>. 
------------------------------------------------------------------


--------------------------------------------------------------------------
Utk berhenti langganan, kirim email ke [EMAIL PROTECTED]
Informasi arsip di http://www.linux.or.id/milis.php3
Pengelola dapat dihubungi lewat [EMAIL PROTECTED]


Kirim email ke