Re: securing server

2008-05-12 Thread Rich Healey
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 P PRABHU wrote: > HI > > Steps : > > 1 ) Dont run Xwindows and better install MINIMAL/SERVER edition of OS > 2 ) Remove all unwanted packages. U can very well reduce the number of > packages to 300max > 3 ) Remove all unwanted user/group accounts >

Re: securing server

2008-05-12 Thread Rich Healey
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Oliver Antwerpen wrote: > > Steve schrieb: >> Le 07-05-2008, à 17:34:08 +0800, Abdul Bijur Vallarkodath >> ([EMAIL PROTECTED]) a écrit : >> >> >>>just my two pence. >>> >> >> and my two centimes. >> >> >>>* Change the ports of most p

Re: [SECURITY] [DSA 1575-1] New Linux 2.6.18 packages fix denial of service

2008-05-12 Thread dann frazier
On Mon, May 12, 2008 at 11:52:27PM +0100, Dominic Hargreaves wrote: > On Mon, May 12, 2008 at 03:13:14PM -0600, dann frazier wrote: > > > Vulnerability : denial of service > > > CVE-2008-1669 > > > > Alexander Viro discovered a race condition in the fcntl code that > > may permit local

Re: [SECURITY] [DSA 1572-1] New php5 packages fix several vulnerabilities

2008-05-12 Thread Raphael Geissert
[EMAIL PROTECTED] wrote: > [EMAIL PROTECTED] a écrit : >> Does anyone have the same problem ? > > > Ok, it seems there is a problem with : libphp5.so (libapache2-mod-php5) > > I replaced the file with an older one and it works. Did you by any chance also installed php5-dbg? > > -- Atomo64

Re: [SECURITY] [DSA 1575-1] New Linux 2.6.18 packages fix denial of service

2008-05-12 Thread Dominic Hargreaves
On Mon, May 12, 2008 at 03:13:14PM -0600, dann frazier wrote: > Vulnerability : denial of service > CVE-2008-1669 > > Alexander Viro discovered a race condition in the fcntl code that > may permit local users on multi-processor systems to execute parallel > code paths that are other

Re: [SECURITY] [DSA 1573-1] New php5 packages fix several vulnerabilities

2008-05-12 Thread Teodor MICU
Hi. I think the subject line should have been with /rdesktop/ instead of /php5/. Thanks Thijs Kinkhorst wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1573-1 [EMAIL

Re: [SECURITY] [DSA 1573-1] New php5 packages fix several vulnerabilities

2008-05-12 Thread Thijs Kinkhorst
Hi all, On Sunday 11 May 2008 17:16, Thijs Kinkhorst wrote: > Package: rdesktop Thank you for your comments, yes, I'm aware that the subject is wrong. Unfortunately due to what seems a bug in Debian's mailing list management software, when I resend it it gets rejected. I've asked to list