Linux Today SECURITY LETTER FOR SEPTEMBER 26, 2000 Latest Security News for the Linux and Open Source Community. ------------------------------------------------------------------ ------------------------------------------------------------------ TODAY'S LINUX SECURITY NEWS: ------------------------------------------------------------------ LINUX-MANDRAKE SECURITY UPDATE ADVISORY: XPDF UPDATE [NEW UPDATE] "There is a potential race condition when using tmpnam() and fopen() in xpdf versions prior to 0.91. This exploit can be only used as root to overwrite arbitrary files if a symlink is created between the calls to tmpname() and fopen()... There was an incorrect dependancy on the t1lib package in the previous updates for xpdf for Linux-Mandrake 6.x and 7.0. This update resolves those dependancy issues." COMPLETE STORY: http://linuxtoday.com/story.php3?sn=27949 ------------------------------------------------------------------ SUSE SECURITY ANNOUNCEMENT: SYSLOGD/KLOGD [UPDATE] "An error caused our ftp servers to serve older syslogd packages for the SuSE-5.3 and 6.2 Intel i386 distributions. This has been corrected before the weekend." COMPLETE STORY: http://linuxtoday.com/story.php3?sn=27970 ------------------------------------------------------------------ SUSE SECURITY ANNOUNCEMENT: CRYPTO PACKAGES FOR 7.0 "Many customers have asked to publish the packages of the SuSE-7.0 distribution that are not included in the US version due to US crypto regulations." COMPLETE STORY: http://linuxtoday.com/story.php3?sn=27971 ------------------------------------------------------------------ THE INDEPENDENT: SPOOKED IN A GAME OF CAT AND MOUSE BETWEEN A HACKER AND THE FEDS "To put it plainly, 'bonez' nailed me. And it took me two days to notice. My friend Mark Anderson, a Unix guru, told me how to proceed. 'Format your hard drive to get rid of him. He just uses you to bounce an IRC connection. You don't have enough bandwidth or disk to be attractive to steal, and you aren't famous enough to be defaced.'" COMPLETE STORY: http://www.independent.co.uk/news/Digital/Columnists/2000-09/chris250900.shtml /-------------------------------------------------------------------\ NEED TO LEARN ABOUT LINUX FAST? Your Linux Adventure Begins Here� LinuxStart.com gives you all the latest Linux news and events. Offering tutorials, games, development, documentation and system support, it offers you all the information you need to get started with Linux. Don't hesitate, visit: http://www.linuxstart.com \--------------------------------------------------------------adv.-/ ------------------------------------------------------------------ Visit the other sites in the Linux Channel: Linux Planet <http://www.linuxplanet.com>, LinuxStart <http://www.linuxstart.com>, Linux Central <http://www.linuxcentral.com>, and JustLinux <http://www.justlinux.com>. Also, check out the ISP-Linux Moderated Digest <http://isp-lists.isp-planet.com/moderated/isp-linux/>. ------------------------------------------------------------------ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ For information about advertising in this newsletter, contact Frank Fazio, Director of Inside Sales, internet.com Corporation Call (203)662-2997 or write mailto:[EMAIL PROTECTED] ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ This newsletter is published by internet.com Corporation http://internet.com - The Internet Industry Portal ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ To learn about other free newsletters offered by internet.com or to change your subscription - http://e-newsletters.internet.com ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ internet.com's network of more than 100 Websites are organized into 14 channels... Internet Technology http://internet.com/sections/it.html E-Commerce/Marketing http://internet.com/sections/marketing.html Web Developer http://internet.com/sections/webdev.html Windows Internet Technology http://internet.com/sections/win.html Linux/Open Source http://internet.com/sections/linux.html Internet Resources http://internet.com/sections/resources.html Internet Lists http://internet.com/sections/lists.html ISP Resources http://internet.com/sections/isp.html Downloads http://internet.com/sections/downloads.html International http://internet.com/sections/international.html Internet News http://internet.com/sections/news.html Internet Investing http://www.internet.com/sections/stocks.html ASP Resources http://internet.com/sections/asp.html Wireless Internet http://internet.com/sections/wireless.html ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ To find an answer - http://search.internet.com ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ For information on reprinting or linking to internet.com content: http://internet.com/corporate/permissions.html ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Copyright (c) 2000 internet.com Corporation ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -------------------------------------------------------------------------- Utk berhenti langganan, kirim email ke [EMAIL PROTECTED] Informasi arsip di http://www.linux.or.id/milis.php3 Pengelola dapat dihubungi lewat [EMAIL PROTECTED]
