Linux Today SECURITY LETTER FOR MAY 25, 2000 Latest Security News for the Linux and Open Source Community. ___________________________ Sponsors ________________________________ This newsletter sponsored by: TechRepublic _____________________________________________________________________ ------------------------------------------------------------------ ------------------------------------------------------------------ TODAY'S LINUX SECURITY NEWS: ------------------------------------------------------------------ WALL ST. JOURNAL: LOVE BUG PROMPTS SECURITY EXPERTS TO POKE AT MICROSOFT'S WEAK POINTS "Microsoft has taken steps to make Outlook more secure, but many security experts say the fact that the ubiquitous e-mail system was so vulnerable is evidence of fundamental flaws in many Microsoft products." COMPLETE STORY: http://dowjones.wsj.com/n/SB959164703543123536-d-main-c1.html ------------------------------------------------------------------ LWN: LINUX-MANDRAKE SECURITY UPDATE - PACKAGE: DUMP "Dump may cause security problem due to a buffer overflow. This package removes the set gid root on the dump exec file." COMPLETE STORY: http://lwn.net/daily/lm-dump.html ------------------------------------------------------------------ LWN: LINUX-MANDRAKE SECURITY UPDATE - PACKAGE: XEMACS "Under some circumstances, users are able to snoop on other users' keystrokes. This is a serious problems if you use modules that require e.g. input of passwords, such as MailCrypt." COMPLETE STORY: http://lwn.net/daily/mand-xemacs.html /-------------------------------------------------------------------\ FREE WEB RESOURCE FOR IT PROS -- JOIN TECHREPUBLIC! Your FREE TechRepublic Passport gives you access to all content at TechRepublic.com. Plus, customize the site to your IT specialty! Got questions about Net Security? Find answers about that--and more! http://www.enlist.com/cgi-bin/re/techrepublic_com769 \--------------------------------------------------------------adv.-/ ------------------------------------------------------------------ RED HAT SECURITY ADVISORY: UPDATED MAILMAN PACKAGES ARE AVAILABLE. "New mailman packages are available which close security holes present in earlier versions of mailman. All sites using the mailman mailing list management software should upgrade." COMPLETE STORY: http://linuxtoday.com/story.php3?sn=22346 ------------------------------------------------------------------ CALDERA SYSTEMS, SECURITY ADVISORY: XEMACS "Under some circumstances, users are able to snoop on other users' keystrokes. This is a serious problems if you use modules that require e.g. input of passwords, such as MailCrypt." COMPLETE STORY: http://linuxtoday.com/story.php3?sn=22349 ------------------------------------------------------------------ CALDERA SYSTEMS SECURITY ADVISORY: DOS ATTACK AGAINST X SERVER "A bug was discovered in the X server's authentication code that allows a remote user to completely hang the victim's X server at least for a considerable amount of time, and eventually crash it. While the X server is frozen, it is not even possible to switch to a different console." COMPLETE STORY: http://linuxtoday.com/story.php3?sn=22369 ------------------------------------------------------------------ Visit the other sites in the Linux Channel: Linux Planet <http://www.linuxplanet.com>, LinuxStart <http://www.linuxstart.com>, Linux Central <http://www.linuxcentral.com>, and JustLinux <http://www.justlinux.com>. Also, check out the ISP-Linux Moderated Digest <http://isp-lists.isp-planet.com/moderated/isp-linux/>. ------------------------------------------------------------------ To advertise on our newsletters and 125+ more at internet.com, please contact Frank Fazio: mailto:[EMAIL PROTECTED] Director, Inside Sales (203)-662-2997 ------------------------------------------------------------------ Copyright 2000 internet.com Corp. <http://www.internet.com>. ------------------------------------------------------------------ -------------------------------------------------------------------------- Utk berhenti langganan, kirim email ke [EMAIL PROTECTED] Informasi arsip di http://www.linux.or.id/milis.php3 Pengelola dapat dihubungi lewat [EMAIL PROTECTED]
