[CentOS-announce] CESA-2013:0815 Moderate CentOS 6 httpd Update

2013-05-14 Thread Johnny Hughes

CentOS Errata and Security Advisory 2013:0815 Moderate

Upstream details at : https://rhn.redhat.com/errata/RHSA-2013-0815.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

i386:
e15436d438dd9e3310517bf332a000bf0a5744aa95b97a85d922735830f630f6  
httpd-2.2.15-28.el6.centos.i686.rpm
5b55d8c6900b23e7b81e0af76977c4dfd88f6ec86a856ee8b76b71fd08df415b  
httpd-devel-2.2.15-28.el6.centos.i686.rpm
4264a4230d12d3ab2a7675eedc285c18c373822289112e530cc0f57228db6dbb  
httpd-manual-2.2.15-28.el6.centos.noarch.rpm
1af95a6bcec5670487d42f952c64e144f111e9ab1eceefa05ab8fa972118a648  
httpd-tools-2.2.15-28.el6.centos.i686.rpm
167e76578c90b87073b52cbf8c0b1ed049ce85957d6e9a04a125ca94f0677344  
mod_ssl-2.2.15-28.el6.centos.i686.rpm

x86_64:
d61bf1614aa2cf9ef74fabbb9845043bfc0530a8967fadef8e6b426ebeafc89e  
httpd-2.2.15-28.el6.centos.x86_64.rpm
5b55d8c6900b23e7b81e0af76977c4dfd88f6ec86a856ee8b76b71fd08df415b  
httpd-devel-2.2.15-28.el6.centos.i686.rpm
b25c1b85c499f8fdc8aab849e147b60108351de061de68e70dccffe59af667a0  
httpd-devel-2.2.15-28.el6.centos.x86_64.rpm
4264a4230d12d3ab2a7675eedc285c18c373822289112e530cc0f57228db6dbb  
httpd-manual-2.2.15-28.el6.centos.noarch.rpm
f8d28f9089433038b69e5d750c80c2ff1f71a13e58920a2c2c6f6134b87b23cb  
httpd-tools-2.2.15-28.el6.centos.x86_64.rpm
55c8ffc2a4bae473d22f76f2c0a57d6f2b71a3ea7ec40acd60ec2dac0c43077f  
mod_ssl-2.2.15-28.el6.centos.x86_64.rpm

Source:
fb4fb0f75cd750a3cc2576577cd9b86896bd126833ebe574e0abb9af6b8d2d67  
httpd-2.2.15-28.el6.centos.src.rpm



-- 
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #cen...@irc.freenode.net

___
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce


[CentOS-announce] CEBA-2013:0816 CentOS 6 scsi-target-utils Update

2013-05-14 Thread Johnny Hughes

CentOS Errata and Bugfix Advisory 2013:0816 

Upstream details at : https://rhn.redhat.com/errata/RHBA-2013-0816.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

i386:
caae37f662f6d33e98d10e4cb179ece08a95364f79be5a031fbed19cad23b292  
scsi-target-utils-1.0.24-3.el6_4.i686.rpm

x86_64:
be1ac0a56aaf98089531a68fd3ad3261fcd2b1e256aa2856803b643e00b95f37  
scsi-target-utils-1.0.24-3.el6_4.x86_64.rpm

Source:
c40b30182bd8a8bd8d5e5a7807affa0264513983fc94abed069dfb678d040142  
scsi-target-utils-1.0.24-3.el6_4.src.rpm



-- 
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #cen...@irc.freenode.net

___
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce


[CentOS-announce] CESA-2013:0820 Critical CentOS 5 firefox Update

2013-05-14 Thread Johnny Hughes

CentOS Errata and Security Advisory 2013:0820 Critical

Upstream details at : https://rhn.redhat.com/errata/RHSA-2013-0820.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

i386:
97493f85d0f07b44225728576e12e5cbf3ebc54fca8f499948f159ae06570f1b  
firefox-17.0.6-1.el5.centos.i386.rpm
26a902981a68efd125829a0f6d81a2996474324c4e2d9141c02e6ba1a2efabea  
xulrunner-17.0.6-1.el5_9.i386.rpm
bae31872bc26f892106be348319d1b8154ebe1324eea6762d08310a372f7a6e1  
xulrunner-devel-17.0.6-1.el5_9.i386.rpm

x86_64:
97493f85d0f07b44225728576e12e5cbf3ebc54fca8f499948f159ae06570f1b  
firefox-17.0.6-1.el5.centos.i386.rpm
ea6ad9ebafb7a28241bf348fd92a300c5f93da547dfc575b94277da45557013f  
firefox-17.0.6-1.el5.centos.x86_64.rpm
26a902981a68efd125829a0f6d81a2996474324c4e2d9141c02e6ba1a2efabea  
xulrunner-17.0.6-1.el5_9.i386.rpm
ad04ed8af2967d0eb5a0337e32766596641a7cf9a30d2ef40ff0dee80cade38c  
xulrunner-17.0.6-1.el5_9.x86_64.rpm
bae31872bc26f892106be348319d1b8154ebe1324eea6762d08310a372f7a6e1  
xulrunner-devel-17.0.6-1.el5_9.i386.rpm
440cf2e5b71620659ccec6a10d0d82befeb4e2590133e3c5252cbc1fbc234d80  
xulrunner-devel-17.0.6-1.el5_9.x86_64.rpm

Source:
1a2b66fd90f5ef62516fa108ec0d86b8de647e95a5ac6b412a7ab2b05c5e67cc  
firefox-17.0.6-1.el5.centos.src.rpm
d35e1cae0e40754aa4d9c91d0fcf3c633f99d3feb0855d25f807809d35700d6c  
xulrunner-17.0.6-1.el5_9.src.rpm



-- 
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #cen...@irc.freenode.net

___
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce


[CentOS-announce] CESA-2013:0821 Important CentOS 5 thunderbird Update

2013-05-14 Thread Johnny Hughes

CentOS Errata and Security Advisory 2013:0821 Important

Upstream details at : https://rhn.redhat.com/errata/RHSA-2013-0821.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

i386:
6f5bf77731d4f2c16e7efda3d1733a04ca15dcb95406f63b5c52b2e466c79d94  
thunderbird-17.0.6-1.el5.centos.i386.rpm

x86_64:
2dfcef0abc42916d0cb55c8f28f00ff5a96f1e87b230be2512d39258d050  
thunderbird-17.0.6-1.el5.centos.x86_64.rpm

Source:
40e4dfd9cd3db66cd84342863cbf821e70dea5faac4413a76f8e4694fd956c49  
thunderbird-17.0.6-1.el5.centos.src.rpm



-- 
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #cen...@irc.freenode.net

___
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce


[CentOS-announce] CEBA-2013:0824 CentOS 6 corosync Update

2013-05-14 Thread Johnny Hughes

CentOS Errata and Bugfix Advisory 2013:0824 

Upstream details at : https://rhn.redhat.com/errata/RHBA-2013-0824.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

i386:
93dc0dcf0d6978ea67e2ecff958ecb3fb756e60e81b9a43ab689184f0921c0fd  
corosync-1.4.1-15.el6_4.1.i686.rpm
b2145a1dfeed57ae3cd8291e86dc433b339cd8674f555892a3a02545ef80cdfa  
corosynclib-1.4.1-15.el6_4.1.i686.rpm
8bc27813cb4f7c05ccbb9d463a31588c1e3602e1bf57a93e559f1bb043870a1b  
corosynclib-devel-1.4.1-15.el6_4.1.i686.rpm

x86_64:
9574b459af3366b8fc2f6ff6fbdc6d511c0e1bc79bf0cbfc907ed7bbb2884a00  
corosync-1.4.1-15.el6_4.1.x86_64.rpm
b2145a1dfeed57ae3cd8291e86dc433b339cd8674f555892a3a02545ef80cdfa  
corosynclib-1.4.1-15.el6_4.1.i686.rpm
1438e76a209567449a9907a2076634af15185f4bec539728b3815dd50441f080  
corosynclib-1.4.1-15.el6_4.1.x86_64.rpm
8bc27813cb4f7c05ccbb9d463a31588c1e3602e1bf57a93e559f1bb043870a1b  
corosynclib-devel-1.4.1-15.el6_4.1.i686.rpm
b7597e0b01952f7574d8fd65fb8d625de27979510ead52fad9c6ab9a5674ff0d  
corosynclib-devel-1.4.1-15.el6_4.1.x86_64.rpm

Source:
b101fd2d389653153fe31b194a8f9390467f3760e32fcfd353255d8a17ee7123  
corosync-1.4.1-15.el6_4.1.src.rpm



-- 
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #cen...@irc.freenode.net

___
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce


[CentOS-announce] CESA-2013:0821 Important CentOS 6 thunderbird Update

2013-05-14 Thread Johnny Hughes

CentOS Errata and Security Advisory 2013:0821 Important

Upstream details at : https://rhn.redhat.com/errata/RHSA-2013-0821.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

i386:
9e575e7431da985279ff8da501b327d81192643e270a3d2b12b9c5cee2a8  
thunderbird-17.0.6-2.el6.centos.i686.rpm

x86_64:
6b1672db94b98ff30261c1d77f479c63101e762e153970dccf7e84b901b32fee  
thunderbird-17.0.6-2.el6.centos.x86_64.rpm

Source:
fbbe00f3081a8469041dbbf75d35b860a7a3f886301d2bb5ed123ced6ced2674  
thunderbird-17.0.6-2.el6.centos.src.rpm



-- 
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #cen...@irc.freenode.net

___
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce


[CentOS-announce] CESA-2013:0820 Critical CentOS 6 firefox Update

2013-05-14 Thread Johnny Hughes

CentOS Errata and Security Advisory 2013:0820 Critical

Upstream details at : https://rhn.redhat.com/errata/RHSA-2013-0820.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

i386:
58cb58c313523b3a4d4c59ca3d88d75897a7b34c34085903826ffa5013cf1a1b  
firefox-17.0.6-1.el6.centos.i686.rpm
114745141c51efdd53e2359eeae0ff3a530ae9079037b031d12e2d46cae5f3ac  
xulrunner-17.0.6-2.el6.centos.i686.rpm
2ce0b91cf817ed8c790866cd2af2e39774a48d67174839766654dea26fd1f812  
xulrunner-devel-17.0.6-2.el6.centos.i686.rpm

x86_64:
58cb58c313523b3a4d4c59ca3d88d75897a7b34c34085903826ffa5013cf1a1b  
firefox-17.0.6-1.el6.centos.i686.rpm
7b56ac132afaee3bb701492812f6b2d05338b40fc5b69d33cf1253d812b5623e  
firefox-17.0.6-1.el6.centos.x86_64.rpm
114745141c51efdd53e2359eeae0ff3a530ae9079037b031d12e2d46cae5f3ac  
xulrunner-17.0.6-2.el6.centos.i686.rpm
ed70a941345c5d2ffa7ac8c7859b1c07d1ce95f6df4d4b067792561ed7e337f9  
xulrunner-17.0.6-2.el6.centos.x86_64.rpm
2ce0b91cf817ed8c790866cd2af2e39774a48d67174839766654dea26fd1f812  
xulrunner-devel-17.0.6-2.el6.centos.i686.rpm
827734b72e5ea994d6781c31105050a5d56ce9e11c0b1ccb06718ae094e0257c  
xulrunner-devel-17.0.6-2.el6.centos.x86_64.rpm

Source:
34430e83a078fc493a9d3868a24cb9e3f736cb955b09b7b853502a28a7ad9470  
firefox-17.0.6-1.el6.centos.src.rpm
eeaa359a123936f921e917cec44ca011e1d12e7fa990d1241d3774b503dbfe2c  
xulrunner-17.0.6-2.el6.centos.src.rpm



-- 
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #cen...@irc.freenode.net

___
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce


Re: [CentOS-es] Servidor DNS

2013-05-14 Thread Walter Luna
Ocurre que tienes dentro de la carpeta donde esta la configuración del dns un 
archivo llamado named.root o algo asi (eso depende de la distro que uses ) en 
donde están los 16 dns raíz que manejan la resolución de nombres de todo 
Internet. Es por eso que te funciona sin agregar nada en la linea forwarders. 
Lo que no entiendo es a que quieres escapar? 
Saludos.



 De: Rodrigo Pichiñual Norin rodrigo.pichin...@gmail.com
Para: centos-es@centos.org; Walter Luna hamlu...@yahoo.com.ar 
Enviado: martes, 14 de mayo de 2013 1:46
Asunto: Re: [CentOS-es] Servidor DNS
 


modifique el named.conf y me funciono..

pero tengo una duda en este named.conf no coloque ninguna ip para forwarders y 
de todos modos tengo dns para mi redlocal y externa(internet) .

estoy utilizando una ip estática  antes en /etc/resolv.conf colocaba la puerta 
de enlace ahora coloco la ip del servidor dns que acabo de crear.

mi pregunta es como logro escapar y resolver los nombres de la red externa 
(internet).



El 14 de mayo de 2013 01:05, Rodrigo Pichiñual Norin 
rodrigo.pichin...@gmail.com escribió:

osea los  forwarders son dns para resolver nombres en el exterior de mi red 
local'??


o entiendo mal




gracias



El 13 de mayo de 2013 22:23, Walter Luna hamlu...@yahoo.com.ar escribió:


Hola:
Las lineas deben quedar asi
 forwarders { 8.8.4.4; 8.8.8.8; };


Estos son los DNS que provee google, puedes usar los que tengas disponibles y 
usar la cantidad que quieras.

La linea:
 listen-on       { 127.0.0.1; 192.168.56.101/24; };
Estos son los rangos ip  donde escuchara tu dns las peticiones de tu red 
local y el loopback de tu servidor 
Agrega la linea
 forward only;
Para que tu dns siempre consulte a los listados en la linea forwarders 
primero,.
No te olvides agregar el /etc/resolv.conf
nameserver 127.0.0.1

como segunda linea.
Espero te sirva esto.
Saludos.-


- Mensaje original -
De: Diego Chacón di...@gridshield.net
Para: centos-es@centos.org
CC:
Enviado: lunes, 13 de mayo de 2013 13:46

Asunto: Re: [CentOS-es] Servidor DNS


Si le sirve en la lan quiere decir que la interfaz que escucha no es
localhost.
La recursion que le sugeri es para sus clientes lan.

Saludos,


2013/5/13 Carlos Tirado Elgueta carlos.tir...@gmail.com

 Hola Rodrigo.

 Estas algo confundido.

 1) Debes definir por que interfaz el servicio esta a la escucha
 2) Debes definir desde que clientes aceptara consultas
 3) Debes definir las vistas para los diferentes clientes (internos o
 externos)
 4) De ser necesario debes definir los forwardeos si tu dns.
 5) Jamas habilitar recursion yes en zona publica.



 El 13 de mayo de 2013 11:18, Rodrigo Pichiñual Norin 
 rodrigo.pichin...@gmail.com escribió:

  a ok lo probare ... también puedo agrega un servidor externo en
  la configuración ?
 
  en  forwarders {
                  // 200.87.100.10;
          };
 
 
  Muchas gracias
 
 
  El 13 de mayo de 2013 11:13, Diego Chacón di...@gridshield.net
 escribió:
 
   Eso le permite a los clientes definidos poderle preguntar al DNS por el
   dominio local y por sitios externos de los cuales el DNS no tiene
   autoridad.
  
   Saludos,
  
  
   2013/5/13 Rodrigo Pichiñual Norin rodrigo.pichin...@gmail.com
  
e Diego te refieres a esto
   
     recursion yes;
            allow-recursion {
                    127.0.0.1;
                    192.168.56.101/24;
            };
   
   
no lo tengo definido en named.conf , para que debo definir
  estomuchas
gracias por responder
   
   
   
   
   
El 13 de mayo de 2013 11:08, Diego Chacón di...@gridshield.net
   escribió:
   
 Tiene definido :

 recursion yes;



 2013/5/13 Rodrigo Pichiñual Norin rodrigo.pichin...@gmail.com

  Hola a todos:
 
 
  Resulta que instale un servidor dns en mi red local, este
   funciona...me
  puedo conectar mediante ssh y hacer ping con el nombre asignado
 en
  la configuración a distintas maquinas de mi red local,
 
  uso un dominio ficticio como ... serverloc.cl, y el nombre del
 dns
   es
  dns.serverloc.cl, la cosa es que dentro de mi red local
funcionapero
  no
  puedo tener accesso a la internet,
 
  en /etc/resolv  tengo mi servidor dns y antes de instalar el
  servidor
dns
  tenia acá mi puerta de enlace.
 
 
  mi pregunta es que el dominio tiene que ser real y no ficticio o
 me
falta
  alguna configuración.
 
 
  Gracias
  ___
  CentOS-es mailing list
  CentOS-es@centos.org
  http://lists.centos.org/mailman/listinfo/centos-es
 



 --
 Diego Chacón Rojas
 Teléfono: +506 2258.5757
 E-mail: di...@gridshield.net
 Gridshield: I.T. Service Management
 ___
 CentOS-es mailing list
 CentOS-es@centos.org
 http://lists.centos.org/mailman/listinfo/centos-es

[CentOS] Local Privilege Escalation

2013-05-14 Thread Tom Brown

Hi - Looking at

https://news.ycombinator.com/item?id=5703758

I have just tried this on a fully patched 6.4 box and it seems vulnerable - 

Do other see the same?

thanks
___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Local Privilege Escalation

2013-05-14 Thread Eero Volotinen
Yep, works also on my centos 6.4 box.

--
Eero


2013/5/14 Tom Brown t...@ng23.net


 Hi - Looking at

 https://news.ycombinator.com/item?id=5703758

 I have just tried this on a fully patched 6.4 box and it seems vulnerable -

 Do other see the same?

 thanks
 ___
 CentOS mailing list
 CentOS@centos.org
 http://lists.centos.org/mailman/listinfo/centos

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Local Privilege Escalation

2013-05-14 Thread Banyan He
Did anyone try 6.x other than 6.4 what I mean? I don't have the server 
to try right now.


Banyan He
Blog: http://www.rootong.com
Email: ban...@rootong.com

On 5/14/13 9:52 AM, Eero Volotinen wrote:
 Yep, works also on my centos 6.4 box.

 --
 Eero


 2013/5/14 Tom Brown t...@ng23.net

 Hi - Looking at

 https://news.ycombinator.com/item?id=5703758

 I have just tried this on a fully patched 6.4 box and it seems vulnerable -

 Do other see the same?

 thanks
 ___
 CentOS mailing list
 CentOS@centos.org
 http://lists.centos.org/mailman/listinfo/centos

 ___
 CentOS mailing list
 CentOS@centos.org
 http://lists.centos.org/mailman/listinfo/centos


___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Local Privilege Escalation

2013-05-14 Thread Akemi Yagi
On Tue, May 14, 2013 at 9:24 AM, Tom Brown t...@ng23.net wrote:

 Hi - Looking at

 https://news.ycombinator.com/item?id=5703758

 I have just tried this on a fully patched 6.4 box and it seems vulnerable -

 Do other see the same?

Yes. Reported earlier in this forum thread (with additional info):

http://www.centos.org/modules/newbb/viewtopic.php?topic_id=42827forum=59

Akemi
___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Local Privilege Escalation

2013-05-14 Thread Eero Volotinen
Is this 6.4 only or does it work on 5.9 also?
14.5.2013 19.25 Tom Brown t...@ng23.net kirjoitti:


 Hi - Looking at

 https://news.ycombinator.com/item?id=5703758

 I have just tried this on a fully patched 6.4 box and it seems vulnerable -

 Do other see the same?

 thanks
 ___
 CentOS mailing list
 CentOS@centos.org
 http://lists.centos.org/mailman/listinfo/centos

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Local Privilege Escalation

2013-05-14 Thread Greg Bailey
On 05/14/2013 10:07 AM, Eero Volotinen wrote:
 Is this 6.4 only or does it work on 5.9 also?

According to:

https://bugzilla.redhat.com/show_bug.cgi?id=962792

Statement: This issue does not affect the kernel packages as shipped 
with Red Hat Enterprise Linux 5 because we did not backport upstream 
commit b0a873eb that introduced this issue.

This issue does affect the kernel packages as shipped with Red Hat 
Enterprise Linux 6 and Red Hat Enterprise MRG 2.

We are working on updated packages to correct this issue in Red Hat 
Enterprise Linux 6 and Red Hat Enterprise MRG 2 and will release them 
once they have been completed and tested.

-Greg




 14.5.2013 19.25 Tom Brown t...@ng23.net kirjoitti:

 Hi - Looking at

 https://news.ycombinator.com/item?id=5703758

 I have just tried this on a fully patched 6.4 box and it seems vulnerable -

 Do other see the same?

 thanks
 ___
 CentOS mailing list
 CentOS@centos.org
 http://lists.centos.org/mailman/listinfo/centos

 ___
 CentOS mailing list
 CentOS@centos.org
 http://lists.centos.org/mailman/listinfo/centos

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] What is the recommended method to obtain Pan 0.136+ (with SSL) for Centos 6?

2013-05-14 Thread Jay Leafey

On 05/09/2013 01:31 PM, Rock wrote:


I'm really no good at compiling unless all I have to do is
issue the make command. So, maybe I'll have to hold off on
compiling Pan 0.136 with stunnel...



I was able to take the source RPM mentioned earlier and update it to 
build 0.139.  The result has some quirks I was not used to, like 
remembering the last newsgroup I used, but it does work OK, including 
SSL.  You can find the specfile I used at:


http://pastebin.com/deUZpESH

My build was under CentOS 6 (6.3 to be precise) 64-bit, I haven't tried 
any others.  You will have to download the pan sources, but that 
shouldn't be too hard.  Use rpmbuild (rpmbuild -bb pan.spec) and it 
should create a usable RPM, assuming you have the prerequisites 
installed.  If not, rpmbuild will tell you what you need to install.


No warranty is expressed or implied, no assurance of usability is 
provided, etc.  Like any open-source project, if you break it you own 
both pieces.  All I know is that it works for me.


YMMV!
--
Jay Leafey - jay.lea...@mindless.com
Memphis, TN

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Local Privilege Escalation

2013-05-14 Thread Akemi Yagi
On Tue, May 14, 2013 at 9:56 AM, Akemi Yagi amy...@gmail.com wrote:
 On Tue, May 14, 2013 at 9:24 AM, Tom Brown t...@ng23.net wrote:

 Hi - Looking at

 https://news.ycombinator.com/item?id=5703758

 I have just tried this on a fully patched 6.4 box and it seems vulnerable -

 Do other see the same?

 Yes. Reported earlier in this forum thread (with additional info):

 http://www.centos.org/modules/newbb/viewtopic.php?topic_id=42827forum=59

Announced in that thread:

CentOSPlus *test* kernel with the patch is now available from:

http://people.centos.org/toracat/kernel/6/plus/perfbugfix/x86_64/

It was confirmed to work. Only the 64-bit kernel is provided because
the 32-bit kernel is not affected.

NOTE:  This is _not_ an official release by CentOS. The distro kernel
with the patch may be released later.
___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


[CentOS] Bit Torrent Application

2013-05-14 Thread Mark LaPierre
Hey All,

Can someone suggest a bit torrent application for CentOS 6.4 along with 
the name of the repo where it resides.

Add/Remove Software, and several google attempts, have come up empty.

-- 
 _
°v°
   /(_)\
^ ^  Mark LaPierre
Registered Linux user No #267004
https://linuxcounter.net/

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Local Privilege Escalation

2013-05-14 Thread Johnny Hughes
On 05/14/2013 02:38 PM, Akemi Yagi wrote:
 On Tue, May 14, 2013 at 9:56 AM, Akemi Yagi amy...@gmail.com wrote:
 On Tue, May 14, 2013 at 9:24 AM, Tom Brown t...@ng23.net wrote:
 Hi - Looking at

 https://news.ycombinator.com/item?id=5703758

 I have just tried this on a fully patched 6.4 box and it seems vulnerable -

 Do other see the same?
 Yes. Reported earlier in this forum thread (with additional info):

 http://www.centos.org/modules/newbb/viewtopic.php?topic_id=42827forum=59
 Announced in that thread:

 CentOSPlus *test* kernel with the patch is now available from:

 http://people.centos.org/toracat/kernel/6/plus/perfbugfix/x86_64/

 It was confirmed to work. Only the 64-bit kernel is provided because
 the 32-bit kernel is not affected.

 NOTE:  This is _not_ an official release by CentOS. The distro kernel
 with the patch may be released later.

Here is the most recent distro kernel with just the patch linked from
the RH Bugzilla.  This fixed the issue on our test platforms:

http://people.centos.org/hughesjr/c6kernel/2.6.32-358.6.1.el6.cve20132094/

Note:  This is signed by the centos-6 test key and it is provided as a
best effort option to mitigate the above security issue while waiting
for an upstream solution.  It is not an official CentOS package and
needs to be fully tested for fitness by each user before used in production.

Thanks,
Johnny Hughes



signature.asc
Description: OpenPGP digital signature
___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Bit Torrent Application

2013-05-14 Thread Yves Bellefeuille
On Tuesday 14 May 2013, Mark LaPierre marklap...@aol.com wrote:

 Can someone suggest a bit torrent application for CentOS 6.4 along
 with the name of the repo where it resides.

[root@poontang ~]# yum search bittorrent

ctorrent-1.3.4-14.dnh3.3.2.el6.x86_64 : Command line BitTorrent client 
for unix-like environments

aria2-1.14.1-1.el6.rf.x86_64 : Download utility with BitTorrent and 
Metalink support

ktorrent-3.3.4-1.el6.x86_64 : A BitTorrent program

rtorrent-0.8.6-4.el6.x86_64 : BitTorrent client based on libtorrent

transmission-2.13-1.el6.x86_64 : A lightweight GTK+ BitTorrent client

I use Vuze, https://www.vuze.com/

-- 
Yves Bellefeuille y...@storm.ca
Mekaro en Otavo, Kanado, 18-20 majo 2013: http://mekaro.ca/

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Bit Torrent Application

2013-05-14 Thread Mark LaPierre
On 05/14/2013 07:20 PM, Yves Bellefeuille wrote:
 On Tuesday 14 May 2013, Mark LaPierre marklap...@aol.com wrote:

 Can someone suggest a bit torrent application for CentOS 6.4 along
 with the name of the repo where it resides.

 [root@poontang ~]# yum search bittorrent

 ctorrent-1.3.4-14.dnh3.3.2.el6.x86_64 : Command line BitTorrent client
 for unix-like environments

 aria2-1.14.1-1.el6.rf.x86_64 : Download utility with BitTorrent and
 Metalink support

 ktorrent-3.3.4-1.el6.x86_64 : A BitTorrent program

 rtorrent-0.8.6-4.el6.x86_64 : BitTorrent client based on libtorrent

 transmission-2.13-1.el6.x86_64 : A lightweight GTK+ BitTorrent client

 I use Vuze, https://www.vuze.com/


[root@mushroom ~]# yum search bittorrent
Loaded plugins: fastestmirror, protectbase, refresh-packagekit, security
Loading mirror speeds from cached hostfile
  * base: mirror.dattobackup.com
  * contrib: mirror.ash.fastserv.com
  * elrepo: mirror.symnds.com
  * extras: mirror.linux.duke.edu
  * updates: mirror.ash.fastserv.com
0 packages excluded due to repository protections
Warning: No matches found for: bittorrent
No Matches found
[root@mushroom ~]#

I like the looks of transmission-2.13-1.el6.  Perhaps I need a repo name?

-- 
 _
°v°
   /(_)\
^ ^  Mark LaPierre
Registered Linux user No #267004
https://linuxcounter.net/

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Bit Torrent Application

2013-05-14 Thread Yves Bellefeuille
On Tuesday 14 May 2013, Mark LaPierre marklap...@aol.com wrote:

 I like the looks of transmission-2.13-1.el6.  Perhaps I need a repo
  name?

[root@poontang ~]# yum info transmission
Available Packages
Name: transmission
Arch: x86_64
Version : 2.13
Release : 1.el6
Size: 12 k
Repo: epel
Summary : A lightweight GTK+ BitTorrent client
URL : http://www.transmissionbt.com/
License : MIT and GPLv2
Description : Transmission is a free, lightweight BitTorrent client. It 
features
: a simple, intuitive interface on top on an efficient,
: cross-platform back-end. 

-- 
Yves Bellefeuille y...@storm.ca
Mekaro en Otavo, Kanado, 18-20 majo 2013: http://mekaro.ca/

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Bit Torrent Application(SOLVED)

2013-05-14 Thread Mark LaPierre
On 05/14/2013 07:30 PM, Yves Bellefeuille wrote:
 On Tuesday 14 May 2013, Mark LaPierre marklap...@aol.com wrote:

 I like the looks of transmission-2.13-1.el6.  Perhaps I need a repo
   name?

 [root@poontang ~]# yum info transmission
 Available Packages
 Name: transmission
 Arch: x86_64
 Version : 2.13
 Release : 1.el6
 Size: 12 k
 Repo: epel
 Summary : A lightweight GTK+ BitTorrent client
 URL : http://www.transmissionbt.com/
 License : MIT and GPLv2
 Description : Transmission is a free, lightweight BitTorrent client. It
 features
  : a simple, intuitive interface on top on an efficient,
  : cross-platform back-end.


Thank you.  Installation complete.

[root@mushroom ~]# yum --enablerepo=epel install transmission

-- 
 _
°v°
   /(_)\
^ ^  Mark LaPierre
Registered Linux user No #267004
https://linuxcounter.net/

___
CentOS mailing list
CentOS@centos.org
http://lists.centos.org/mailman/listinfo/centos