Full Disclosure mailing list archives
Re: Ubuntu 11.10 now unsecure by default
From: xD 0x41 <secn3t () gmail com>
Date: Sun, 20 Nov 2011 08:41:24 +1100
DESCRIPTION: Ubuntu has issued an update for librsvg. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library. It just does not stop with ubuntu.. really, everyday i see another problem lib etc... well, atleast theyre fixing it :s maybe in a cpl years Ubuntu will be abit nicer to use.. or, just go back a few versions and harden... i found 2009 kernel of ubuntu very easy to harden, yet newer ones, i would be worried to even attempt.. anyhow thats all i think i have on this toic.. its another wasted time topic... MS has had this 'feauture' for years...so why is it only being picked out in ubuntu.. ohwell.. i guess the divison of iso cds is a problem..and somuch magazine coverage where ubuntu developers themmselfs have spoken on the ease of use... APC magazine likes ubuntu actually, but it also classes it as newbie, nowdays the kernel is more 'buggy' tho. rm -rf /current_devs touch a_secure_launchpad_where_ALL_addons_pass_testers thats all on this topic.. so lame... discussing one os, and then i guess for what, unless kcope makes a post the list is frozen talking cfrap... like this :s you guys have told me to growup, ill tell you guys, welcome to the 21st century. XD PS: pce Larry :) just used your email coz, it was about ONLY decent one out of like 30 on that tpic :P hehe...take care m8! On 18 November 2011 06:42, Larry W. Cashdollar <bugs () fbi dhs org> wrote:
imap? creating folders? etc.. =/Are there any other services this may effect? On Thu, Nov 17, 2011 at 7:18 PM, Andrew N Dowden < andrew_dowden () softdesign net nz> wrote:On 18/11/11 23:46, Larry W. Cashdollar wrote: Anyone know what the default is for Ubuntu 11 PermitEmptyPasswords no PasswordAuthentication no in /etc/ssh/sshd_config? for Ubuntu 11.10 (Oneiric) snip: ( from */etc/ssh/sshd_config* ) -- # To enable empty passwords, change to yes (NOT RECOMMENDED) PermitEmptyPasswords no -- # Change to no to disable tunnelled clear text passwords #PasswordAuthentication yes -- -- SoftDesign Group, Dowden Software Associates P O Box 31 132, Lower Hutt 5040, NEW ZEALAND _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/-- _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Re: Ubuntu 11.10 now unsecure by default, (continued)
- Re: Ubuntu 11.10 now unsecure by default Marcio B. Jr. (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Dave (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Mario Vilas (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Cody Robertson (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Valdis . Kletnieks (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Larry W. Cashdollar (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Valdis . Kletnieks (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Andrew N Dowden (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Ryan Dewhurst (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default Larry W. Cashdollar (Nov 17)
- Re: Ubuntu 11.10 now unsecure by default xD 0x41 (Nov 19)
- Re: Ubuntu 11.10 now unsecure by default Olivier (Nov 18)
- Re: Ubuntu 11.10 now unsecure by default Mario Vilas (Nov 18)
- Re: Ubuntu 11.10 now unsecure by default Valdis . Kletnieks (Nov 18)
- Re: Ubuntu 11.10 now unsecure by default Darren Martyn (Nov 18)
- Re: Ubuntu 11.10 now unsecure by default root (Nov 18)
- Re: Ubuntu 11.10 now unsecure by default GloW - XD (Nov 19)
- Re: Ubuntu 11.10 now unsecure by default root (Nov 19)
- Re: Ubuntu 11.10 now unsecure by default charlie (Nov 23)
- Re: Ubuntu 11.10 now unsecure by default dave bl (Nov 23)
- Re: Ubuntu 11.10 now unsecure by default charlie (Nov 23)
- Re: Ubuntu 11.10 now unsecure by default Mario Vilas (Nov 17)