|
|
ru.linux- RU.LINUX --------------------------------------------------------------------- From : Igor Suvorov 2:5020/400 28 Jun 2005 20:52:43 To : Artem Chuprina Subject : Re: Debian & security fix -------------------------------------------------------------------------------- Artem Chuprina <ran+news@ran.pp.ru> writes: > AC>> А там есть, что править? У них уже довольно давно в security что-либо > AC>> падало раз в месяц... > AS> А Вы сравните со списком fc3/rhel updates. > > RH - не аргумент. Аргументом был бы багтрак, но его у меня за отпуск > накопилось слишком много. http://www.securityfocus.com/advisories/8749 A remote attacker could exploit this vulnerability to cause a Denial of Service by sending a specially crafted Quantum archive to the server. http://www.securityfocus.com/bid/13978 Apache SpamAssassin 3.0.4 was recently released [0], and fixes a denial of service vulnerability in versions 3.0.1, 3.0.2, and 3.0.3. The vulnerability allows certain misformatted long message headers to cause spam checking to take a very long time. While the exploit has yet to be seen in the wild, we are concerned that there may be attempts to abuse the vulnerability in the future. Therefore, we strongly recommend all users of these versions upgrade to Apache SpamAssassin 3.0.4 as soon as possible. Если пролистать bugtraq за эти недели, там же всплывут самба, openssl, дырки в ядрах, tcpdump и еще всякое разное. -- Igor --- ifmail v.2.15dev5.3 * Origin: Жила была девочка. Сама виновата. (2:5020/400) Вернуться к списку тем, сортированных по: возрастание даты уменьшение даты тема автор
Архивное /ru.linux/367760e04e23.html, оценка из 5, голосов 10
|