LinuxSecurity.com: It was discovered that Cacti, a systems and services monitoring frontend, performed insufficient input sanitising, leading to cross site scripting and SQL injection being possible.
LinuxSecurity.com: Roundup, an issue tracking system, fails to properly escape HTML input, allowing an attacker to inject client-side code (typically JavaScript) into a document that may be viewed in the victim's browser.
LinuxSecurity.com: It was discovered that start_kdeinit in KDE 3 did not properly sanitize its input. A local attacker could exploit this to send signals to other processes and cause a denial of service or possibly execute arbitrary code. (CVE-2008-1671)
LinuxSecurity.com: It was discovered that Emacs did not account for precision when formatting integers. If a user were tricked into opening a specially crafted file, an attacker could cause a denial of service or possibly other unspecified actions. This issue
Sun says the open source version of its Java development kit has been picked up by two popular Linux distros. Canonical's Ubuntu 8.04 LTS distribution and Red Hat's forthcoming Fedora 9 both include OpenJDK, with the latter also to offer
Linux Journal: "In the mid-1990s there was an attitude within some business circles that Linux as an operating system was something used by hobbyists or IT enthusiasts but was not really practical for the business environment..."
Computerworld UK: "Unlike many of my journalistic confrères, I did not seize on this when it came out: 'OOXML and Office 2007 Conformance: a Smoke Test,' even though the following tantalising result emerged..."
Groklaw: "Guess where Sandeep Gupta landed after he left SCO? If I put a blindfold on you and told you to point on the map, you'd still guess Microsoft, wouldn't you...?"
Ars Technica: "CoreCodec, the company behind the high-performance CoreAVC H.264 implementation, issued an apology this morning for its recent abuse of the Digital Millennium Copyright Act..."
Hello LinuxQuestions.OrgI am a Linux newbie when it comes top most aspects of Linux but I have been using Linux servers running H-SPhere (a commercial webhosting package) for a while. We have just...