Re: logcheck.ignore entries

2004-04-14 Thread Paul Hink
Russell Coker <[EMAIL PROTECTED]> wrote: > Try this one: > CRON\[.*\]:( )?\(pam_unix\) session (opened)|(closed) for user (root)|(mail) > [...] > For having two different words match you need to put each word in > braces, "(opened|closed)" is the same as "opene(d|c)losed". No! "session (opened

Re: logcheck.ignore entries

2004-04-14 Thread Paul Hink
Jeff Coppock <[EMAIL PROTECTED]> wrote: > On 14 Apr 2004 20:35:19 GMT Paul Hink <[EMAIL PROTECTED]> wrote: > >> Russell Coker <[EMAIL PROTECTED]> wrote: >> >> > Try this one: >> > CRON\[.*\]:( )?\(pam_unix\) session (opened)|(closed) for

Re: Document the bug fix policy regarding PHP Safe Mode

2005-07-22 Thread Paul Hink
Florian Weimer <[EMAIL PROTECTED]> wrote: > Multi-user servers where most users have shell access are a non-issue > as far as PHP Safe Mode is concerned. The desire behind Safe Mode is > that your users can upload arbitrary PHP scripts, and still don't get > shell access to the box. No. PHP Safe

Re: ping22: can not kill this process

2008-01-05 Thread Paul Hink
Thomas Hochstein <[EMAIL PROTECTED]> wrote: > Raphael Geissert schrieb: > >>> disable_functions = dl, phpinfo, system, mail, include, shell_exec, >>> exec, >> >> include()? I don't want to imagine how many scripts will break. > > A script that doesn't run is a *very* secure script. That depends o

Re: Woody security updates

2003-04-25 Thread Paul Hink
Matthias Faulstich <[EMAIL PROTECTED]> wrote: > Does this jigdo - file load the latest security updates or are there any > other > places to download / create CD-Images? AFAIK no. I think you'll have to apt-get update && apt-get upgrade immediately after the installation because CDs can never b

Re: port forwarding issues

2003-07-01 Thread Paul Hink
Peter A. Felvegi <[EMAIL PROTECTED]> wrote: > i'm about to set up port forwarding on a firewall to be able to reach > some hosts on the lan from the outside. i wish to use iptables prerouting > rules. my question is, is there a way to detect the port forwarding, > and/or get info about the host i

Re: [SECURITY] [DSA 431-1] New perl packages fix information leak in suidperl

2004-02-01 Thread Paul Hink
Matt Zimmerman <[EMAIL PROTECTED]> wrote: > On Sun, Feb 01, 2004 at 12:18:07PM +0100, Arthur de Jong wrote: >> I don't mean to be paranoid but this advisory is dated February 1st, >> 2004 but the new changelog entries are both dated 11 Sep 2003 and >> the deb file for i386 I got has a timestamp o

Re: port forwarding issues

2003-07-01 Thread Paul Hink
Peter A. Felvegi <[EMAIL PROTECTED]> wrote: > i'm about to set up port forwarding on a firewall to be able to reach > some hosts on the lan from the outside. i wish to use iptables prerouting > rules. my question is, is there a way to detect the port forwarding, > and/or get info about the host i

Re: [SECURITY] [DSA 431-1] New perl packages fix information leak in suidperl

2004-02-01 Thread Paul Hink
Matt Zimmerman <[EMAIL PROTECTED]> wrote: > On Sun, Feb 01, 2004 at 12:18:07PM +0100, Arthur de Jong wrote: >> I don't mean to be paranoid but this advisory is dated February 1st, >> 2004 but the new changelog entries are both dated 11 Sep 2003 and >> the deb file for i386 I got has a timestamp o

Re: logcheck.ignore entries

2004-04-14 Thread Paul Hink
Russell Coker <[EMAIL PROTECTED]> wrote: > Try this one: > CRON\[.*\]:( )?\(pam_unix\) session (opened)|(closed) for user (root)|(mail) > [...] > For having two different words match you need to put each word in > braces, "(opened|closed)" is the same as "opene(d|c)losed". No! "session (opened

Re: logcheck.ignore entries

2004-04-14 Thread Paul Hink
Jeff Coppock <[EMAIL PROTECTED]> wrote: > On 14 Apr 2004 20:35:19 GMT Paul Hink <[EMAIL PROTECTED]> wrote: > >> Russell Coker <[EMAIL PROTECTED]> wrote: >> >> > Try this one: >> > CRON\[.*\]:( )?\(pam_unix\) session (opened)|(closed) for

security.debian.org stable/updates Release file outdated

2005-01-07 Thread Paul Hink
Hi! The Release file of stable/updates on security.debian.org and its OpenPGP signature seem to be missing an update after the latest security updates for Woody were released yesterday: | Release 06-Jan-2005 16:4318k | Release.gpg 06-Jan-2005 16:43 1k http://s

Re: security.debian.org stable/updates Release file outdated

2005-01-07 Thread Paul Hink
Paul Hink <[EMAIL PROTECTED]> wrote: > The Release file of stable/updates on security.debian.org and its > OpenPGP signature seem to be missing an update after the latest > security updates for Woody were released yesterday: > [...] > This probably is the reason for apt-c

Re: woody kernel image

2005-01-30 Thread Paul Hink
Michelle Konzack <[EMAIL PROTECTED]> wrote: > Am 2005-01-29 22:56:39, schrieb [EMAIL PROTECTED]: >> This should be posted somewhere easy to find so that folks know. Definitely it should be! IMO debian-announce or debian-security-announce would be appropriate. >> Where is it posted that the drop

Re: woody kernel image

2005-01-30 Thread Paul Hink
Paul Hink <[EMAIL PROTECTED]> wrote: > Michelle Konzack <[EMAIL PROTECTED]> wrote: > >> Am 2005-01-29 22:56:39, schrieb [EMAIL PROTECTED]: >>> Where is it posted that the dropped support for 2.4.18? >> >> It was on and > > Both of

Re: [SECURITY] [DSA 667-1] New PostgreSQL packages fix arbitrary library loading

2005-02-04 Thread Paul Hink
Repasi Tibor <[EMAIL PROTECTED]> wrote: > However, I'm missing DSA-665 on the DSA mailing list ... is it > possible it wasn't posted? http://www.debian.org/security/faq#missing Paul -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTE

Re: Bad press related to (missing) Debian security

2005-06-27 Thread Paul Hink
Adam Majer <[EMAIL PROTECTED]> wrote: > Jan Lühr wrote: >> In it's last one to two years Woody was starving out of security >> updates. (Samba, Mozilla, Kernel, etc.). > These are much less of a problem since they deal with either Intranet > only applications (Samba), "Intranet" is not a synon