Re: Sarge, Bind9 (9.2.4-1sarge3) and DNS cache poisoning

2008-07-22 Thread Florian Weimer
* Carlos Carvalho: > >Note that using --random with a patched resolver (one that uses stronger > >random numbers for source ports) makes it vulnerable again. By default, > >Netfilter tries to preserve source ports, so its NAT does not destroy > >the effort put into BIND et al. > > Really? Thi

Re: Mass-updating cached hosts keys afrer ssh security upgrade?

2008-07-22 Thread Maximilian Wilhelm
Anno domini 2008 JW scripsit: Hi! > In the past several weeks I have applied the openssh/openssl updates to my > systems - the updates the fix the random-number-generator weakness. > This has turned into an unexpected nightmare: my users have, between them > all, > dozens of cached host keys,

Re: Mass-updating cached hosts keys afrer ssh security upgrade?

2008-07-22 Thread Mike Dornberger
Hi, On Mon, Jul 21, 2008 at 06:43:31PM -0500, JW wrote: > Has anyone come up with a way to read all the cached hosts - all the > ~/.ssh/known_hosts entries on a system (or at least per user) and fix them? > > Essentially I need some semi-automated way to fix this since I have many > users's con

Re: [SECURITY] [DSA 1613-1] new libgd2 packages fix multiple vulnerabilities

2008-07-22 Thread jpalm
Hello. I am on vacation and out of the office from July 20th to July 27th. If you need assistance with e-mail, web hosting, or technical support, please leave a message with Danny Beckett or Ray Brown at 616-301-1037. If you have any other questions or messages, please leave a detailed message a