Displaying 20 results from an estimated 1100 matches similar to: "Re: Attack feeling ??"
1997 Sep 18
0
[MOD] About "Security concern"
[Mod: Warning - we are hitting issues of security policy and that is not
what we would like to see here --alex]
Brian Koref said:
>
> Great input...
>
> As an investigator, many of the compromises I see involve systems
> which are 2 to 3 years old. An old slackware box sitting on a .mil
> domain, which some airman set up as a test machine. The airman gets
> trasferred, and
1997 Sep 16
8
Re: Security Concern..
[Mod: This message is a reason *why* linux-security is moderated list. This
is also a reason why Rogier, myself, Alan Cox and others really do not want
to have completely open lists that deal with security related aspects of
running a system as way too many people just jump to conclusions and give
suggestions without doing any reasearch on a subject. -- alex (co-moderator
of
1997 Feb 24
0
ADMIN: Change of address
-----BEGIN PGP SIGNED MESSAGE-----
As I am sure you noticed from my messages to linux-{security|alert}, I have
changed my primary email address from alex@bach.cis.temple.edu to
alex@yuriev.com. Linux Security WWW will be moved from bach.cis.temple.edu
in the nearest future and while I will continue to mirror pages to make them
accessible at http://bach.cis.temple.edu/linux/linux-security/, please
1998 Apr 11
0
Linux libc5.4.33 dumbness w/ mk[s]temp()
Linux libc5.4.33''s mk[s]temp() functions require 6 X''s at the end of
a filename (the BSD versions I''ve seen are a bit more flexible). This alone
is enough to break any claims to real BSD compatability, but wait, there''s
more:
Only 1 of those 6 X''s are really unique. The rest are simply pid.
So you can create exactly 62 temp files using mk[s]temp()
2000 Apr 20
0
Can't add new users/passwords in 2.0.3v Samba on Solaris 2.7
I downloaded and installed the binary 2.03 Solaris 2.7 version
of Samba three days ago from the Samba web page. I installed as
root on my SUN Ultra5 unix system.
I have accessed your configuration tool via http://<my unix ip>:901.
I logged in as root, and have been able to set up global items and
shares.
I cannot setup new users under the 'passwords' tab. I enter
my user name,
1998 May 09
4
Apparent SNMP remote-root vulnerability.
I just had a remote root break-in on my machine (x86 running Red Hat Linux
5.0 with all the updates except for kernel-2.0.32-3) this morning at
06:03:28 EDT. From what I''ve been able to gather, it appears to have been
through snmpd, which I missed when I was weeding out unused daemons.
Sorry for the feeble message, but all I know (or at least strongly
suspect) is that there''s a
1997 May 29
1
Vulnerability of suid/sgid programs using libXt
-----BEGIN PGP SIGNED MESSAGE-----
Buffer overflow in the resource handling code of the libXt (X11R6)
Thu May 29, 1997
Distribution of this document is unlimited
Copyright (C) Alexander O. Yuriev (alex@yuriev.com)
Net Access
Abstract
A buffer overflow was found in the resource handling
2009 Nov 04
4
Redhat 7.3 as CentOS 5 domU
Hello,
What is the simpliest way to run Redhat 7.3 server as CentOS 5 domU?
I see that Xen emulates Intel PIIX ATA controller for HVM domUs but
latest kernel of Redhat 7.3 (2.4.20-20.7smp) has no ata_piix kernel
module yet. Is it possible to download it somewhere or there is
another way? :)
And I'd like to avoid reinstalling them with the new OS. Preferably
they'd just die their
1997 Mar 24
1
More sendmail problems... Partition your disks!
This is yet-another reason to _partition_ your disks. Of course hard links
do not work accross filesystems. Even thought it is a pain in the neck to do
when installing your operating system, think about separating critical
system files from non-critical and non-system files from system files. I
would say that the following layout is a good place to start:
/
/usr (nosuid,nodev,ro)
/usr/local
2011 Oct 15
2
gctorture() and gzfile() doesn't get along.
Found the simpliest way of seeing I bug I encountered doing "R CMD check --use-gct": Just launch R (with --vanilla), and do this:
> ?gctorture
# this work
> gctorture()
> ?gctorture
Error in gzfile(file, "rb") :
can only weakly reference/finalize reference objects
# this does not
It seems that when gctorture() is on gzfile() doesn't work.
1996 Nov 22
0
LSF Update#14: Vulnerability of the lpr program.
-----BEGIN PGP SIGNED MESSAGE-----
$Id: lpr-vulnerability-0.6-linux,v 1.1 1996/11/22 21:42:46 alex Exp $
Linux Security FAQ Update
lpr Vulnerability
Thu Nov 21 22:24:12 EST 1996
Copyright (C) 1995,1996 Alexander O. Yuriev (alex@bach.cis.temple.edu)
CIS Laboratories
2003 Nov 18
1
Starting IPTables
I have found this problem while trying to see the active rules on IPTABLES:
[root@worf root]# iptables --list
/lib/modules/2.4.7-10/kernel/net/ipv4/netfilter/ip_tables.o: init_module:
Device or resource busy
Hint: insmod errors can be caused by incorrect module parameters, including
invalid IO or IRQ parameters
/lib/modules/2.4.7-10/kernel/net/ipv4/netfilter/ip_tables.o: insmod
2005 Oct 07
2
nt migration concerns
hi!
we have completed testing samba pdc on a small network using fc3. we
have been succesful so far. we now intend to totally replace our nt4 pdc
with samba pdc.
the following will be the main components of the network:
1. 300++ win98/2000/xx clients
2. win2003 db servers
3. terminal services with 100 clients
before we shutdown the network and do the switch may i ask your inputs
about the
2001 Apr 17
2
Unable to find the Domain Master Browser name
I have just installed Samba on RedHat Linux 6.2 which is working fine.
However, I've noted that for every 20 minutes, the following error message
being logged under log.nmb,
[2001/04/17 14:29:27, 0] nmbd/nmbd_browsesync.c:find_domain_master_name_query_
fail(362) find_domain_master_name_query_fail: Unable to find the Domain
Master Browser name HOME<1b> for the workgroup HOME. Unable
2005 Nov 26
2
rdnc error
Hello,
I noticed in my logwatch file I have an error with my rndc key. I could
'play' around with it and may fix it but most likey just hose things up. I
think I see the problem but not 100% sure. I think the key file has 3
different names.
Here's the error:
**Unmatched Entries**
/etc/named.conf:23: couldn't find key 'rndckey' for use with command
channel
2012 Aug 09
1
maildir to sdbox offline conversion
Hi all. I've just installed dovecot v2.1 in a multihomed, multiinstance
setup, It took me two days to convert the old v1.1 configs, now everything
works like charm! But. :)
I have several maildir mailboxes, I decided to use the sdbox storage type
instead.
I ran into difficoulties using the dsync util.
My virtual users are in an OpenLDAP DB on a differnet machine, and I do not
have access
1999 Dec 10
3
scp with openssh on the server side and $PATH.
Hi!
When I try to use scp from or to a machine that runs openssh-1.2pre16
on Debian Linux, I keep getting the error message "scp: command not
found". Executing "ssh this-host echo \$PATH" yields
"/usr/bin:/bin:/usr/sbin:/sbin:" which might be set in config.h.
sshd is installed to /usr/local/stow/openssh-1.2pre16/sbin, scp to
/usr/local/stow/openssh-1.2pre16/bin;
2008 Jan 09
1
Newbie: confusion with the new FXO/FXS card
Hello everyone,
I'm trying to set up a Asterisk server. I have two cards - one is an
BeroNet BN2S0 with two ISDN lines (4 channels):
http://www.adcomtec.com/webstore/beronet_bn2s0.php?cat=90
and a Rhino R8FXX with one FXO module and two FXS:
http://www.voipsupply.com/product_info.php?products_id=2940
I would like to set up an Asterisk server with 8 phones, which will
share the phone
2011 Sep 19
1
Testing HVM domU SBS2003 virtualization
My target is virtualized SBS2003 on dell PE T410
Now I test xen on my desktop.
Centos 6 as dom0 - kernel: 2.6.32-131.12.1.el6.xendom0.x86_64
from http://xenbits.xen.org/people/mayoung/testing/x86_64/
hypervisor 4.1.1.3
from http://xenbits.xen.org/people/mayoung/EL6.xen/x86_64/
One NIC simple bridge-network configuration
dom0 uses static IP with ISP router as gateway
domU have also static IP
2004 Jun 16
2
smbspool to Windows 2000 Server: "ERRgeneral opening remote file"
Hi,
I am trying to print from my Debian unstable Notebook to a printer
that is connected to a Windows 2000 Server. Target environment is CUPS
which uses smbspool as a front-end, and smbspool gives a strange error
message.
| export DEVICE_URI="smb://account:password@domain/server/printer"
| smbspool foo bar Title 1 ignore Makefile
gives the error message
| ERROR: ERRHRD - ERRgeneral