 Wednesday, June 26, 2002

Patch Week

In case you haven't heard, it's patch week here in sysadminland. The kind folks at Apache have patches for a problem they had with blowing chunks [CAN-2002-0392]. Userland has patched theirs in a timely fashion for a change. The vulnerabilty in Apache can result in a remote compromise of your box, known in the trade as being owned. You don't want this to happen to you — unless you're a devotee of the Happy Tutor.

And the OpenSSH boys have mangled the public relations aspect of announcing that they and ISS had found a hole in some OpenSSH versions, but weren't going to tell anybody what the hole was.

