Home Blog Page 9362

Report shows lack of faith in Bluetooth

Author: JT Smith

CNet has a story saying most businesses polled by Frost & Sullivan say
they have no plans to purchase products using Bluetooth, the wireless data-transfer
standard.

Linux standard eases programming

Author: JT Smith

CNet reports on
the Free Standards Group’s Friday release of version 1.0 of the Linux Standard Base specification, “a
move aimed at reducing the difficulties of getting software such as Oracle’s database to run on
versions of Linux from Red Hat, Debian, SuSE and others.”

Category:

  • Linux

Alan Cox: Linux 2.4.5-ac23 available

Author: JT Smith

ftp://ftp.kernel.org/pub/linux/kernel/people/alan/2.4/. Intermediate diffs are available from http://www.bzimage.org.

2.4.5-ac23
o Merge with 2.4.6pre8
| This should make things much more stable
o Restore backed out shm patches (Christoph Rohland)
o Fix quotaoff crash (Jan Kara)
o Move stuff into BSS on decnet (Xavier Bestel)
o Update ims twinturbo fb maintainer (Paul Mundt)
o Update Crutcher Dunnavant’s email address (Crutcher Dunnavant)
o UML ^S/^Q support for the console and serial (Livio Soares)
o code cleanups in UML drivers (Jeff Dike)
o UML include and #define cleanups (Niels Kristian Bech Jensen)
o UML ubd driver defines blk_size correctly (Roman Zippel)
o which allowed clean up of related ubd code (Jeff Dike)
o tweak the UML definition is a fixable seg fault (Jeff Dike)
o fix the UML TASK_UNINTERRUPTIBLE deadlock (Jeff Dike)
o Update ldconfig scripts for multiple rodata (Jakub Jelinek)
o Small isdn.h fixes (Kai Germaschewski)
o Add Advantech TurboPAM isdn (Stelian Pop)
o Maxine frame buffer cleanups (Paul Mundt)
o UDF cleanup (Arnaldo Carvalho de Melo)
o Fix jffs2 includes (Keith Owens)
o Small cleanups to vt.c (Arnaldo Carvalho de Melo)
o Clean up istallion driver (Arnaldo Carvalho de Melo)
o Clean up sh-sci driver (Arnaldo Carvalho de Melo)
o Clean up selection (Arnaldo Carvalho de Melo)
o Small random driver cleanups (Arnaldo Carvalho de Melo)
o Small tty_io cleanup (Arnaldo Carvalho de Melo)
o Small isdn_tty cleanup (Arnaldo Carvalho de Melo)
o Expose scsi_add/del_timer for hosts
to adjust timeouts when they know better (Matthew Jacob)
o Remove unneeded init of data (Xavier Bestel)
o Remove unneeded init of data in wavfront (Xavier Bestel)
o Remove unneeded init of data in sb (Xavier Bestel)
o Remove unneeded init of data in nm256 (Xavier Bestel)
o Remove unneeded init of data in oss sound (Xavier Bestel)
o Remove unneeded init of data in cs4232 (Xavier Bestel)
o Remove unneeded init of data in ultrastor (Xavier Bestel)
o Remove unneeded init of data in scsi/hosts.c (Xavier Bestel)
o Remove unneeded init of data in i2o_core (Xavier Bestel)
o Fix strange fs/exec.c error return (Andrew Morton)
o Remove unneeded init of data in mcd (Xavier Bestel)
o Clean up belkin_sa ioctl code (Arnaldo Carvalho de Melo)
o Clean up ftdi_sio ioctl code (Arnaldo Carvalho de Melo)
o Clean up mct_u232 ioctl code (Arnaldo Carvalho de Melo)
o Tidy ircomm_tty_ioctl (Arnaldo Carvalho de Melo)
o Work around cypress cy723c693 RTC stability bug (Ivan Kokshaysky)
o Clean up autofs user access slightly (Arnaldo Carvalho de Melo)
o Small fs/exec.c clean ups (Arnaldo Carvalho de Melo)
o Fix eepro100 oops with power management (Marc Boucher)

2.4.5-ac22
o Fix the remaining make xconfig mess (me)
o Add APM disabling on DMI match (me)
| Needed for the Trigem Delhi3 (aka E Machines E-Tower 333cs)
o Fix pnpbios without hotplug (I hope)
(me)
o Merge an escaped via midi fixup (Adrian Cox)
o Revert minixfs changes

Category:

  • Linux

Tech entreprenuers aren’t scared of Microsoft

Author: JT Smith

The Wall Street Journal has a story saying “many of today’s new crop of technology
entrepreneurs” don’t want court-ordered protection from Microsoft. The article quotes Nat Friedman of Ximian, who says Open Source software can win in the marketplace.

Category:

  • Open Source

Napster goes down

Author: JT Smith

The Associated Press reports that Napster’s song-sharing service was offline today as the service was transforming itself into a music company for paying customers.

SuSE: scotty buffer overflow

Author: JT Smith

Posted at LinuxSecurity.com: “Tkined’s Scotty is a Tcl extension to build network management
applications.
Ntping, a ping/traceroute program, is part of the Scotty package.
It’s failure is to read a hostname as commandline option without checking
the size.
This leads to a bufferoverrun, that could be used to gain root privileges,
because ntping is installed setuid root and is executeable by everyone.”

Category:

  • Linux

SOS for Hailstorm

Author: JT Smith

eWeek reports that Microsoft is asking companies to propsoe new Web services based on its Hailstorm platform, but the company hasn’t guaranteed that this technology will be shared by everyone making proposals.

AbiWord: Wouldn’t you like to be a Pepper, too?

Author: JT Smith

A column at LinuxPlanet compares AbiWord’s attempt to copy Microsoft Word functionality to a knockoff of Dr. Pepper, only it’s better than the knockoffs. “I figure if AbiWord wants to be in this position, then its only fair to hold it
up to the product its trying to emulate.

If you don’t wait for the hoary details, the short answer is: it will not be a poor imitation at
all, once it a full 1.0 release is made.”

Category:

  • Open Source

Java servlet cross-site scripting vulnerability

Author: JT Smith

ApacheToday carries a Bugtraq posting detailing a Java servlet scripting vulnerability that could affect Tomcat, WebSphere, and a wide range of other systems and servers.

Category:

  • Linux

Conectiva advisory for Zope

Author: JT Smith

Posted at LinuxToday: “The Zope authors have released a hotfix that addresses a
vulnerability with ZClasses. Any user can visit a ZClass declaration
and change the ZClass permission mappings for methods and other
objects defined within the ZClass, possibly allowing for unauthorized
access within the Zope instance.”

Category:

  • Linux