Re: NTP security hole CVE-2013-5211?

2014-01-14 Thread Patrick Lamaiziere
Le Thu, 09 Jan 2014 21:18:56 -0800, Xin Li a écrit : > On 1/9/14, 6:12 AM, Palle Girgensohn wrote: > > > > 9 jan 2014 kl. 15:08 skrev Eugene Grosbein : > > > >> On 09.01.2014 19:38, Palle Girgensohn wrote: > >>> They recommend at least 4.2.7. Any thoughts about this? > >> > >> Other than updat

Re: PAM modules

2011-09-19 Thread Patrick Lamaiziere
Le Fri, 16 Sep 2011 15:10:09 -0400, Corey Smith a écrit : Hello, > > My question is: which ones? > > security/pam_ssh_agent_auth > > It is BSD licensed and handy for sudo. But sudo itself is not the in base, so? (while i'm here, +1 for ldap) Regards.

Re: dhclient and CVE-2011-0997...?

2011-04-20 Thread Patrick Lamaiziere
Le Tue, 19 Apr 2011 10:19:46 -0700, Chuck Swiger a écrit : > Hi-- > > Are folks familiar with: > > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0997 > http://www.isc.org/software/dhcp/advisories/cve-2011-0997 > > http://nakedsecurity.sophos.com/2011/04/07/flaw-in-iscs-dhclient-