Displaying 20 results from an estimated 6000 matches similar to: "No announcement for CEBA-2015-1018"
2015 May 21
0
No announcement for CEBA-2015-1018
On 05/21/2015 02:15 PM, Leonard den Ottolander wrote:
> Hi,
>
> Received lvm2 updates for CEBA-2015-1018 but haven't seen an
> announcement on CentOS announce yet nor can I find it in the archives.
> Is it still in the pipeline or did something go wrong?
>
> Regards,
> Leonard.
>
Just me not approving the mail in the announce list.. I just did it.
Note, Red Hat
2017 Feb 09
5
Checksums for git repo content?
Hello John,
On Thu, 2017-02-09 at 16:33 +0000, John Hodrien wrote:
> On Thu, 9 Feb 2017, Leonard den Ottolander wrote:
>
> > How about my request for checksums in the git repo?
>
> What checksums would you actually want in git?
SRPMS are signed which allows the integrity of the contents to be
checked. Such an integrity check is missing from the git repo.
Either a checksum
2013 Oct 14
3
How's 5.10 coming along?
Hello team,
Just wondering how the build of 5.10 is coming along. Is there a
resource that informs us on these matters? Thanks!
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2011 Apr 17
4
glibc-2.5-58.el5_6.2.i686 broken?
Hi,
I woke up Saturday morning unable to boot my freshly upgraded 5.6 with
grub hanging at "GRUB". After getting the boot loader fixed I
experienced crashes in evolution. Downgrading glibc to 2.5-58 seems to
fix these issues. Anyone else seeing this?
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2014 Oct 30
3
Corrupt selinux-policy-targeted-3.7.19-260.el6.noarch.rpm
Hi,
Updating selinux-policy-targeted to 3.7.19-260 fails. The archive seems
corrupt. Got another copy from
http://mirror.centos.org/centos/6/os/x86_64/Packages/ which also fails:
# rpm -Fv selinux-policy-targeted-3.7.19-260.el6.noarch.rpm
Preparing packages for installation...
selinux-policy-targeted-3.7.19-260.el6
warning: /etc/selinux/targeted/contexts/customizable_types saved
as
2017 Feb 02
2
Serious attack vector on pkcheck ignored by Red Hat
On Thu, 2017-02-02 at 06:40 -0800, John R Pierce wrote:
> On 2/2/2017 6:22 AM, Leonard den Ottolander wrote:
> > However, the fact that the binary in the example is setuid is orthogonal
> > to the fact that heap spraying is a very serious attack vector.
>
> without privilege escalation, what does it attack ?
pkcheck might not be directly vulnerable. However, pkexec is.
2015 Oct 26
2
Crash in gnome-terminal on New Profile
Hi,
Anyone else seeing this? C7 Gnome Desktop, opened a gnome-terminal,
click File -> New Profile and gnome-terminal-server gets killed.
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2017 Aug 25
2
Thunderbird update without announcement?
Hi,
I usually receive updates after the related announcement has hit my
inbox. But today I see a thunderbird update, but no message on
centos-announce yet, not even in the archives.
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2016 Dec 14
2
spec file frustration (rant)
Hello Jonathan,
On Wed, 2016-12-14 at 15:03 -0500, Jonathan Billings wrote:
> On Wed, Dec 14, 2016 at 07:29:19PM +0100, Leonard den Ottolander wrote:
> > > get_sources.sh
> >
> > The name suggests this is what we need (or do we??) If only I could find
> > that script anywhere...
>
> Johnny said it at the beginning of his email. I'll paste it again so
2016 Aug 11
2
Missing announcement for qemu-kvm
Hello,
Received an update for qemu-kvm and qemu-img today, but the
corresponding announcement is missing. Haven't received any messages
since August 3rd, so there might be other announcements that haven't
made it to the list yet.
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2017 Jan 27
4
Notes on openssh configuration
Hello list,
To my astonishment the openssh versions on both C6 and C7 will by
default negotiate an MD5 HMAC.
C6 client, C7 server:
debug2: mac_setup: found hmac-md5
debug1: kex: server->client aes128-ctr hmac-md5 none
debug2: mac_setup: found hmac-md5
debug1: kex: client->server aes128-ctr hmac-md5 none
C7 client & server:
debug2: mac_setup: setup hmac-md5-etm at openssh.com
debug1:
2017 Feb 09
4
Serious attack vector on pkcheck ignored by Red Hat
On Thu, 2017-02-02 at 13:40 -0800, Gordon Messmer wrote:
> Escalation *requires* attacking a program in a security context other
> than your own.
Not necessarily. Suppose the adversary is aware of a root
exploit/privilege escalation in a random library. Then the heap spraying
allows this attacker to easily trigger this exploit because he is able
to initialize the entire contents of the
2012 Aug 09
2
Latest sudo update for 5.8 breaks postgresql
Hello,
The latest update to sudo (sudo-1.7.2p1-14.el5_8.2) breaks postgresql.
https://bugzilla.redhat.com/show_bug.cgi?id=846631
It might break other services that rely on access to /etc/nsswitch.conf
too. Assuming you have a "sudoers" line in /etc/nsswitch.conf that file
will be recreated with incorrect file permissions.
After having had issues with selinux permissions on that
2012 Aug 17
1
Wiki dead links CentOS-Fasttrack
Hello,
The links under the CentOS-Fasttrack paragraph at
http://wiki.centos.org/AdditionalResources/Repositories all refer to non
existent pages/files at mirror.centos.org. Where can one find the repo
files and readme?
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2015 Apr 02
2
Openssl C6 distro tag different from upstream
Hi,
Just noticed that the distro tag used in openssl is different from
upstream. Upstream and the last update (openssl-1.0.1e-30.el6_6.7) use
"el6_6" where as the latest update (openssl-1.0.1e-30.el6.8) uses
"el_6". Any reason for this discrepancy?
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2015 Jun 20
1
Debuginfo repodata missing for C6
Hi,
The debuginfo repodata for C6 is missing:
http://debuginfo.centos.org/6/x86_64/repodata/7a42847903e6a76f9397c0bc9aca6afbbef1f74c-filelists.sqlite.bz2: [Errno 14] PYCURL ERROR 22 - "The requested URL returned error: 404 Not Found"
Trying other mirror.
Error: failure:
repodata/7a42847903e6a76f9397c0bc9aca6afbbef1f74c-filelists.sqlite.bz2
from debug: [Errno 256] No more mirrors to
2017 Jan 27
2
Notes on openssh configuration
Hello Gordon,
On Fri, 2017-01-27 at 10:26 -0800, Gordon Messmer wrote:
> Cryptographers still consider MD5 secure for HMAC use. Wikipedia's
> references (currently 6, 7, and 8) in this article are useful:
>
> https://en.wikipedia.org/wiki/Hash-based_message_authentication_code
https://en.wikipedia.org/wiki/MD5 seems to disagree:
"The security of the MD5 has been severely
2017 Feb 02
2
Serious attack vector on pkcheck ignored by Red Hat
Based on an article that was mentioned on this list
https://googleprojectzero.blogspot.nl/2014/08/the-poisoned-nul-byte-2014-edition.html
I found two attacker controlled memory leaks in the option parsing of
pkcheck.c. These memory leaks allow a local attacker the ability to
"spray the heap", i.e. initialize large parts of the heap before
launching his attack.
The original attack
2017 Feb 09
2
Checksums for git repo content?
Hello Johnny,
On Thu, 2017-02-09 at 09:07 -0600, Johnny Hughes wrote:
> Yes .. that content will be republished. It was an accident.
How about my request for checksums in the git repo?
Regards,
Leonard.
--
mount -t life -o ro /dev/dna /genetic/research
2016 Dec 15
2
Can't delete or move /home on 7.3 install
Hello Glen,
On Thu, 2016-12-15 at 10:10 -0800, Glenn E. Bailey III wrote:
> I was most def root.
There's a difference whether you logged in as root or su-ed to root. In
the latter case /home is still in use by the user you su-ed from.
Even though it is not strictly necessary to init 1 you must make sure
not a single user that uses /home for their home directory is logged in
and no system