Bug#273377:

2004-09-25 Thread John Marrett
I have determined that the SSL key and certificate reside in /etc/webmin/miniserv.pem. I understand that there is a script called mod-ssl-makecert that can be found in the package libapache-mod-ssl that acomplishes something quite similar, it is possible it could be adapted to address this requirem

Bug#273421: Invalid Maintainer: field

2004-09-25 Thread Jeroen van Wolffelaar
Package: libofx Severity: serious The Maintainer: field of this packages is syntactically invalid, it has a spurious dot at the end. Of course, lintian gives an error in this... --Jeroen -- System Information: Debian Release: 3.1 APT prefers testing APT policy: (500, 'testing') Architecture

Bug#273377: webmin: Static SSL cert/key pair

2004-09-25 Thread John Marrett
Package: webmin Version: 0.94-7woody3 Severity: grave Tags: security Justification: user security hole I installed webmin on two systems, both installations had the same SSL Certificate fingerprint. As each install appears to use same key it may be possible for a man in the middle to decrypt admin

Bug#271590: webmin security hole.

2004-09-25 Thread Jaldhar H. Vyas
On Tue, 14 Sep 2004, Andy Baxter wrote: > I just found out that this attack (using a local document) only works because > webmin has 'allow unknown referers' set by default in the 'trusted referers' > section of the webmin config. With this turned off, the attack doesn't work > at all, so maybe it

Bug#102921: can this be ture?

2004-09-25 Thread Mac Novak
Desyrelle is a 1.0.0% Naturãl Fèmale Sexuãl Stímulãnt, Incrèãsed Sèxuãl Desire Hèíghtènèd Plèãsure Sènsãtíõns Superiõr Lubricãtiõn Hígh Enèrgy and Stãmínã Maxímum Sènsítívíty and LíbídõMore íntènse õrgãsms Prõmõtes Intímacy & Pãssiõn! Bãlanced spècífícally for t

Bug#121201: Why not

2004-09-25 Thread Rocky Howe
Desyrelle is a 1.0.0% Naturãl Fèmale Sexuãl Stímulãnt, Incrèãsed Sèxuãl Desire Hèíghtènèd Plèãsure Sènsãtíõns Superiõr Lubricãtiõn Hígh Enèrgy and Stãmínã Maxímum Sènsítívíty and LíbídõMore íntènse õrgãsms Prõmõtes Intímacy & Pãssiõn! Bãlanced spècífícally for t

nco_2.9.9-1_i386.changes ACCEPTED

2004-09-25 Thread Debian Installer
Accepted: nco_2.9.9-1.diff.gz to pool/main/n/nco/nco_2.9.9-1.diff.gz nco_2.9.9-1.dsc to pool/main/n/nco/nco_2.9.9-1.dsc nco_2.9.9-1_i386.deb to pool/main/n/nco/nco_2.9.9-1_i386.deb nco_2.9.9.orig.tar.gz to pool/main/n/nco/nco_2.9.9.orig.tar.gz Announcing to debian-devel-changes@lists.debia

beaver_0.2.5-2_i386.changes ACCEPTED

2004-09-25 Thread Debian Installer
Accepted: beaver_0.2.5-2.dsc to pool/main/b/beaver/beaver_0.2.5-2.dsc beaver_0.2.5-2.tar.gz to pool/main/b/beaver/beaver_0.2.5-2.tar.gz beaver_0.2.5-2_i386.deb to pool/main/b/beaver/beaver_0.2.5-2_i386.deb Announcing to debian-devel-changes@lists.debian.org Thank you for your contribution

Processing of nco_2.9.9-1_i386.changes

2004-09-25 Thread Archive Administrator
nco_2.9.9-1_i386.changes uploaded successfully to localhost along with the files: nco_2.9.9-1.dsc nco_2.9.9.orig.tar.gz nco_2.9.9-1.diff.gz nco_2.9.9-1_i386.deb Greetings, Your Debian queue daemon

Processing of beaver_0.2.5-2_i386.changes

2004-09-25 Thread Archive Administrator
beaver_0.2.5-2_i386.changes uploaded successfully to localhost along with the files: beaver_0.2.5-2.dsc beaver_0.2.5-2.tar.gz beaver_0.2.5-2_i386.deb Greetings, Your Debian queue daemon