Displaying 20 results from an estimated 50000 matches similar to: "Thank you"
2017 Feb 02
2
Serious attack vector on pkcheck ignored by Red Hat
On Thu, 2017-02-02 at 06:40 -0800, John R Pierce wrote:
> On 2/2/2017 6:22 AM, Leonard den Ottolander wrote:
> > However, the fact that the binary in the example is setuid is orthogonal
> > to the fact that heap spraying is a very serious attack vector.
>
> without privilege escalation, what does it attack ?
pkcheck might not be directly vulnerable. However, pkexec is.
2013 Oct 14
3
How's 5.10 coming along?
Hello team,
Just wondering how the build of 5.10 is coming along. Is there a
resource that informs us on these matters? Thanks!
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2017 Feb 09
5
Checksums for git repo content?
Hello John,
On Thu, 2017-02-09 at 16:33 +0000, John Hodrien wrote:
> On Thu, 9 Feb 2017, Leonard den Ottolander wrote:
>
> > How about my request for checksums in the git repo?
>
> What checksums would you actually want in git?
SRPMS are signed which allows the integrity of the contents to be
checked. Such an integrity check is missing from the git repo.
Either a checksum
2016 Dec 14
2
spec file frustration (rant)
Hello Jonathan,
On Wed, 2016-12-14 at 15:03 -0500, Jonathan Billings wrote:
> On Wed, Dec 14, 2016 at 07:29:19PM +0100, Leonard den Ottolander wrote:
> > > get_sources.sh
> >
> > The name suggests this is what we need (or do we??) If only I could find
> > that script anywhere...
>
> Johnny said it at the beginning of his email. I'll paste it again so
2014 Oct 30
3
Corrupt selinux-policy-targeted-3.7.19-260.el6.noarch.rpm
Hi,
Updating selinux-policy-targeted to 3.7.19-260 fails. The archive seems
corrupt. Got another copy from
http://mirror.centos.org/centos/6/os/x86_64/Packages/ which also fails:
# rpm -Fv selinux-policy-targeted-3.7.19-260.el6.noarch.rpm
Preparing packages for installation...
selinux-policy-targeted-3.7.19-260.el6
warning: /etc/selinux/targeted/contexts/customizable_types saved
as
2011 Apr 17
4
glibc-2.5-58.el5_6.2.i686 broken?
Hi,
I woke up Saturday morning unable to boot my freshly upgraded 5.6 with
grub hanging at "GRUB". After getting the boot loader fixed I
experienced crashes in evolution. Downgrading glibc to 2.5-58 seems to
fix these issues. Anyone else seeing this?
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2015 Oct 26
2
Crash in gnome-terminal on New Profile
Hi,
Anyone else seeing this? C7 Gnome Desktop, opened a gnome-terminal,
click File -> New Profile and gnome-terminal-server gets killed.
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2012 Aug 09
2
Latest sudo update for 5.8 breaks postgresql
Hello,
The latest update to sudo (sudo-1.7.2p1-14.el5_8.2) breaks postgresql.
https://bugzilla.redhat.com/show_bug.cgi?id=846631
It might break other services that rely on access to /etc/nsswitch.conf
too. Assuming you have a "sudoers" line in /etc/nsswitch.conf that file
will be recreated with incorrect file permissions.
After having had issues with selinux permissions on that
2012 Aug 17
1
Wiki dead links CentOS-Fasttrack
Hello,
The links under the CentOS-Fasttrack paragraph at
http://wiki.centos.org/AdditionalResources/Repositories all refer to non
existent pages/files at mirror.centos.org. Where can one find the repo
files and readme?
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2015 Apr 02
2
Openssl C6 distro tag different from upstream
Hi,
Just noticed that the distro tag used in openssl is different from
upstream. Upstream and the last update (openssl-1.0.1e-30.el6_6.7) use
"el6_6" where as the latest update (openssl-1.0.1e-30.el6.8) uses
"el_6". Any reason for this discrepancy?
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2015 Jun 20
1
Debuginfo repodata missing for C6
Hi,
The debuginfo repodata for C6 is missing:
http://debuginfo.centos.org/6/x86_64/repodata/7a42847903e6a76f9397c0bc9aca6afbbef1f74c-filelists.sqlite.bz2: [Errno 14] PYCURL ERROR 22 - "The requested URL returned error: 404 Not Found"
Trying other mirror.
Error: failure:
repodata/7a42847903e6a76f9397c0bc9aca6afbbef1f74c-filelists.sqlite.bz2
from debug: [Errno 256] No more mirrors to
2017 Jan 27
2
Notes on openssh configuration
Hello Gordon,
On Fri, 2017-01-27 at 10:26 -0800, Gordon Messmer wrote:
> Cryptographers still consider MD5 secure for HMAC use. Wikipedia's
> references (currently 6, 7, and 8) in this article are useful:
>
> https://en.wikipedia.org/wiki/Hash-based_message_authentication_code
https://en.wikipedia.org/wiki/MD5 seems to disagree:
"The security of the MD5 has been severely
2017 Feb 02
2
Serious attack vector on pkcheck ignored by Red Hat
Based on an article that was mentioned on this list
https://googleprojectzero.blogspot.nl/2014/08/the-poisoned-nul-byte-2014-edition.html
I found two attacker controlled memory leaks in the option parsing of
pkcheck.c. These memory leaks allow a local attacker the ability to
"spray the heap", i.e. initialize large parts of the heap before
launching his attack.
The original attack
2017 Feb 09
2
Checksums for git repo content?
Hello Johnny,
On Thu, 2017-02-09 at 09:07 -0600, Johnny Hughes wrote:
> Yes .. that content will be republished. It was an accident.
How about my request for checksums in the git repo?
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2016 Dec 15
2
Can't delete or move /home on 7.3 install
Hello Glen,
On Thu, 2016-12-15 at 10:10 -0800, Glenn E. Bailey III wrote:
> I was most def root.
There's a difference whether you logged in as root or su-ed to root. In
the latter case /home is still in use by the user you su-ed from.
Even though it is not strictly necessary to init 1 you must make sure
not a single user that uses /home for their home directory is logged in
and no system
2016 Dec 14
3
spec file frustration (rant)
Hello Phil,
On Wed, 2016-12-14 at 20:57 +0000, Phil Wyett wrote:
> The path to the repo is wrong.
>
> git clone https://git.centos.org/git/centos-git-common.git
Too late to boost my brain with more coffee for today. Not as sharp as I
would like to be ;) .
Still leaves me with the question why a script to download the source
tarballs is needed when just not adding a .gitignore entry
2012 Jul 12
3
php-pear missing from 5.8 (i386) metadata?
Hi,
# yum install php-pear
<snip>
No package php-pear available.
Nothing to do
This is on CentOS 5.8 (i386). The package is available for both archs on
the two mirrors I checked. I also tried a
# yum clean headers
# yum clean metadata
# yum clean dbcache
to no avail. Am I missing something or is it the metadata?
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2016 Dec 14
2
spec file frustration (rant)
Hello Johnny,
On Wed, 2016-12-14 at 06:58 -0600, Johnny Hughes wrote:
> So:
>
> git clone https://git.centos.org/summary/rpms!skopeo
Apart from the syntax error because the exclamation mark is not escaped
this leads nowhere.
So I tried:
$ git clone https://git.centos.org/git/rpms/skopeo.git
> (that just happens to be what I am working on right now)
>
> cd skopeo
>
>
2016 Dec 15
0
Can't delete or move /home on 7.3 install
Doing a lsof showed no open files against /home. Something else is
locking it, not a user process. Also disabled SELinux, did a init 1,
and only way to remove it was via single user by passing
init=/sysinit/bin/sh
On Thu, Dec 15, 2016 at 10:48 AM, Leonard den Ottolander
<leonard at den.ottolander.nl> wrote:
> Hello Glen,
>
> On Thu, 2016-12-15 at 10:10 -0800, Glenn E. Bailey III
2015 May 28
1
Openssl C6 distro tag different from upstream
Hello,
On Thu, 2015-04-02 at 14:25 +0100, Karanbir Singh wrote:
> On 04/02/2015 11:45 AM, Leonard den Ottolander wrote:
> > Just noticed that the distro tag used in openssl is different from
> > upstream. Upstream and the last update (openssl-1.0.1e-30.el6_6.7) use
> > "el6_6" where as the latest update (openssl-1.0.1e-30.el6.8) uses
> > "el_6". Any