Displaying 20 results from an estimated 89 matches for "nectar".
2003 Sep 16
9
OpenSSH heads-up
...-RELEASE and later
buffer45.patch -- For FreeBSD 4.5-RELEASE and earlier
Currently, I don't believe that this bug is actually exploitable for
code execution on FreeBSD, but I reserve the right to be wrong :-)
Cheers,
--
Jacques Vidrine . NTT/Verio SME . FreeBSD UNIX . Heimdal
nectar@celabo.org . jvidrine@verio.net . nectar@freebsd.org . nectar@kth.se
-------------- next part --------------
Index: crypto/openssh/buffer.c
===================================================================
RCS file: /home/ncvs/src/crypto/openssh/buffer.c,v
retrieving revision 1.1.1.1.2.3
diff -c...
2003 Mar 31
8
what was that?
What does mean this bizarre msgid?
maillog:
Mar 31 19:31:15 cu sm-mta[5352]: h2VFVEGS005352: from=<nb@sindbad.ru>,
size=1737, class=0, nrcpts=1,
msgid=<!~!UENERkVCMDkAAQACAAAAAAAAAAAAAAAAABgAAAAAAAAAfp4Fa2ShPE2u4pP/QpPDIMKAAAAQAAAAj+zb4Isbuk+tYEPVF9Vf,
proto=ESMTP, daemon=MTA, relay=wg.pu.ru [193.124.85.219]
--
Nikolaj I. Potanin, SA http://www.drweb.ru
ID
2003 Nov 26
0
HEADS-UP: BIND denial-of-service vulnerability
...reebsd.org/pub/FreeBSD/CERT/patches/SA-03:19/bind-833.patch.asc
(If you don't find them at ftp.freebsd.org, try ftp2.freebsd.org.)
I expect Doug Barton will upgrade BIND 8 in -STABLE and -CURRENT
tonight or tomorrow.
Cheers,
--
Jacques Vidrine NTT/Verio SME FreeBSD UNIX Heimdal
nectar@celabo.org jvidrine@verio.net nectar@freebsd.org nectar@kth.se
[*] Happy Thanksgiving to those celebrating it, by the way!
----- Forwarded message from Jacques Vidrine <nectar@FreeBSD.org> -----
Date: Wed, 26 Nov 2003 16:54:53 -0800 (PST)
From: Jacques Vidrine <nectar@FreeBSD.org>...
2003 Nov 28
2
Kerberized applications in FreeBSD 5.x
In FreeBSD 5.x only telnet/telnetd works 'out of box' with kerberos.
Why ftp/ftpd, ssh/sshd and cvs do not support kerberos ?
Thanks!
2003 Sep 23
3
OpenSSH: multiple vulnerabilities in the new PAM code
This affects only 3.7p1 and 3.7.1p1. The advice to leave
PAM disabled is far from heartening, nor is the semi-lame
blaming the PAM spec for implementation bugs.
I happen to like OPIE for remote access.
Subject: Portable OpenSSH Security Advisory: sshpam.adv
This document can be found at: http://www.openssh.com/txt/sshpam.adv
1. Versions affected:
Portable OpenSSH versions 3.7p1
2003 Sep 30
1
OpenSSL heads-up
...included in 4.9-RELEASE.
Fixes for the security branches will be backported and incorporated
over the next week.
Don't expect to see a security advisory until most or all of the
commits have been made.
Cheers,
--
Jacques Vidrine . NTT/Verio SME . FreeBSD UNIX . Heimdal
nectar@celabo.org . jvidrine@verio.net . nectar@freebsd.org . nectar@kth.se
2003 Aug 11
1
Kernel build fails (RELENG_4_5)
Hi Jacques, list,
On Mon, Aug 11, 2003 at 09:09:18AM +0100, Bruce M Simpson wrote:
> cc -c -O -pipe -Wall -Wredundant-decls -Wnested-externs -Wstrict-prototypes -Wmissing-prototypes -Wpointer-arith -Winline -Wcast-qual -fformat-extensions -ansi -g -nostdinc -I- -I. -I/usr/src/sys -I/usr/src/sys/../include -I/usr/src/sys/contrib/ipfilter -D_KERNEL -include opt_global.h -elf
2003 Jul 14
0
Security Officer-supported branches update
...-RELEASE|December 31, 2003 |
+-----------------------------------------+
Older releases are not maintained and users are strongly
encouraged to upgrade to one of the supported releases mentioned
above.
Cheers,
--
Jacques Vidrine . NTT/Verio SME . FreeBSD UNIX . Heimdal
nectar@celabo.org . jvidrine@verio.net . nectar@freebsd.org . nectar@kth.se
----- Forwarded message from Jacques Vidrine <nectar@FreeBSD.org> -----
Date: Mon, 14 Jul 2003 08:13:43 -0700 (PDT)
From: Jacques Vidrine <nectar@FreeBSD.org>
To: doc-committers@FreeBSD.org, cvs-doc@FreeBSD.org, cvs...
2004 Jan 09
0
Security Officer-supported branches update
...5.1-RELEASE|February 28, 2004|
+----------------------------------------+
Older releases are not maintained and users are strongly
encouraged to upgrade to one of the supported releases mentioned
above.
Cheers,
--
Jacques Vidrine . NTT/Verio SME . FreeBSD UNIX . Heimdal
nectar@celabo.org . jvidrine@verio.net . nectar@freebsd.org . nectar@kth.se
----- Forwarded message from Jacques Vidrine <nectar@FreeBSD.org> -----
Date: Fri, 9 Jan 2004 09:10:53 -0800 (PST)
From: Jacques Vidrine <nectar@FreeBSD.org>
To: doc-committers@FreeBSD.org, cvs-doc@FreeBSD.org, cvs-...
2003 Sep 17
3
Sendmail vulnerability
...patch and:
# cd /usr/src
# patch -p1 < /path/to/patch
# cd /usr/src/usr.sbin/sendmail
# make obj && make depend && make && make install
Official advisory will go out later today.
Cheers,
--
Jacques Vidrine . NTT/Verio SME . FreeBSD UNIX . Heimdal
nectar@celabo.org . jvidrine@verio.net . nectar@freebsd.org . nectar@kth.se
2003 Sep 17
3
Sendmail vulnerability
...patch and:
# cd /usr/src
# patch -p1 < /path/to/patch
# cd /usr/src/usr.sbin/sendmail
# make obj && make depend && make && make install
Official advisory will go out later today.
Cheers,
--
Jacques Vidrine . NTT/Verio SME . FreeBSD UNIX . Heimdal
nectar@celabo.org . jvidrine@verio.net . nectar@freebsd.org . nectar@kth.se
2003 Oct 02
3
HEADS UP: upcoming security advisories
...rday. The official fixed version, OpenSSL 0.9.7c, was
imported into -CURRENT yesterday, and will be MFC'd to -STABLE
today, but it will be a bit longer to backport fixes for the
security branches.
Cheers,
--
Jacques Vidrine . NTT/Verio SME . FreeBSD UNIX . Heimdal
nectar@celabo.org . jvidrine@verio.net . nectar@freebsd.org . nectar@kth.se
2004 Apr 03
1
Security branch lifetime changes
Hi Folks,
I have extended the lifetime of the RELENG_4_8 security branch, and of
security branches in general:
----- Forwarded message from Jacques Vidrine <nectar@FreeBSD.org> -----
Date: Sat, 3 Apr 2004 07:23:54 -0800 (PST)
From: Jacques Vidrine <nectar@FreeBSD.org>
To: doc-committers@FreeBSD.org, cvs-doc@FreeBSD.org, cvs-all@FreeBSD.org
Subject: cvs commit: www/en/security security.sgml
Message-Id: <200404031523.i33FNsqq079309@repoman...
2002 Jun 26
1
[Fwd: Kerberos buglet in OpenSSH-3.3p1]
Can anyone with Heimdal KrbV verify this?
-------------- next part --------------
An embedded message was scrubbed...
From: Dag-Erling Smorgrav <des at ofug.org>
Subject: Kerberos buglet in OpenSSH-3.3p1
Date: 25 Jun 2002 14:52:10 +0200
Size: 1291
Url: http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20020626/347e123e/attachment.mht
2004 Aug 17
1
remotely exploitable vulnerability in lukemftpd / tnftpd
...s you are running FreeBSD 4.7-RELEASE or specified WANT_LUKEMFTP
when building FreeBSD from source, you should not have lukemftpd
installed.
Even in FreeBSD 4.7, lukemftpd was installed but not enabled.
More details will be available in a FreeBSD advisory to follow.
Cheers,
--
Jacques Vidrine / nectar@celabo.org / jvidrine@verio.net / nectar@freebsd.org
2003 Aug 03
12
FreeBSD Security Advisory FreeBSD-SA-03:08.realpath
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
=============================================================================
FreeBSD-SA-03:08.realpath Security Advisory
The FreeBSD Project
Topic: Single byte buffer overflow in realpath(3)
Category: core
Module: libc
Announced:
2003 Sep 17
4
ftp.freebsd.org out of date? (WRT security advisories)
It seems (at least for me) the patches on ftp.freebsd.org are out of
date for the 03:12 security advisory (openssh). ftp2.freebsd.org has
them fine.
I'm wondering if this is a mirror issue or perhaps round-robin DNS problem?
What compounds the issue is that right now the old openssh 3.7 patches
are there (on ftp.freebsd.org), but not the 3.7.1 patches (which can be
found on
2004 Feb 29
5
mbuf vulnerability
In
http://docs.freebsd.org/cgi/mid.cgi?200402260743.IAA18903
it seems RELENG_4 is vulnerable. Is there any work around to a system that
has to have ports open ?
Version: 1 2/18/2004@03:47:29 GMT
>Initial report
>
<<https://ialert.idefense.com/KODetails.jhtml?irId=207650>https://ialert.idefense.com/KODetails.jhtml?irId=207650;
>ID#207650:
>FreeBSD Memory Buffer
2003 Oct 03
6
FreeBSD Security Advisory FreeBSD-SA-03:18.openssl
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
=============================================================================
FreeBSD-SA-03:18.openssl Security Advisory
The FreeBSD Project
Topic: OpenSSL vulnerabilities in ASN.1 parsing
Category: crypto
Module: openssl
Announced:
2003 Mar 30
3
FreeBSD Security Advisory FreeBSD-SA-03:07.sendmail
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
=============================================================================
FreeBSD-SA-03:07.sendmail Security Advisory
The FreeBSD Project
Topic: a second sendmail header parsing buffer overflow
Category: contrib
Module: