Ubuntu :: Multiple Exploits Listed With Debsecan?
Nov 1, 2010I recently re0instralled and update ubuntu 10.04 LTS. After installing and running debsecan, I found ALOT of problems. Does anyone have experiance with this tool?
View 2 RepliesI recently re0instralled and update ubuntu 10.04 LTS. After installing and running debsecan, I found ALOT of problems. Does anyone have experiance with this tool?
View 2 RepliesI recently installed ubuntu 9.10 and a day later updated with all the suggested security and recommended updates. Now I notice that in my Grub there are two different kernel versions listed. Are they both necessary? Can I / should I get rid of the older one, and if so, how?
I ask because after all these updates I notice my computer runs much slower, so I don't want it overloaded with unnecessary software.
I have a dual boot desktop with WinXP on C: and Ubuntu on D:. GRUB 2 handles the start-up. Having installed multiple updates to Ubuntu, my GRUB menu now lists:
2.5.31-19-generic
2.5.31-17-generic
2.5.31-16-generic
2.5.31-15-generic
2.5.31-14-generic
and (recovery mode) for each of the above, along with the mem test and WinXP.Is there any reason I need to list all these variants of Ubuntu? If not, can I simply edit them from the GRUB config file or must I do something else to actually uninstall them?
Is it possible to remove multiple packages listed in a text file? Similar to "cat orphan.txt | zypper rm" or "zypper rm <orphan.txt." Neither worked.
View 8 Replies View Relatedi just upgraded to ubuntu 10.04 the netbook distro. at the desktop view there is a list of about 10 buttons/menus listed on the left hand side, is there anyway to control what buttons/menus are listed and which icons are listed under each of them? having a netbook i would like to remove and unclutter the desktop view as much as possible but i dont want to remove those apps i still want to be able to open those apps if i want to even if by removing those icons and menus/buttons makes it a pain.
View 1 Replies View RelatedIs Linux vulnerable to Java drive-by exploits? Another computer I run on windows 7 just notified me that it was infected through Java, and I'm wondering if my Linux box (ubuntu 10) with Java installed is vulnerable.
View 1 Replies View RelatedDoes anyone know any common apache 2.2 exploits and how to stop them? I am setting up a web server and want it to be secure as possible. I currently have a basic lamp server on a ubuntu server.
View 1 Replies View RelatedWhen there is an exploit in the kernal, can the iptables firewall get bypass? If yes,how do you know? Otherwise how can you find out.
View 9 Replies View RelatedI have some questions about security
1> are the flash exploits are of any use to a Linux operating system like Ubuntu etc. ?
2>are the Microsoft office exploits any risk to libreoffice or open-office software suites?
3>are there exploits for Linux , open-office and libreoffice ?
A few days ago I installed F12 and it was working fine very well up until today when I booted my computer from a perfect working order state yesterday to this. Well my wireless was still being sniffed and slowed down to dial up speed but what's new thats been consistant for at least 3 months I can't really do much about it since my brother doesn't like changing the password.
I recently logged onto my new fedora 12, 64-bit, system encrypted (all partitions effected by install), selinux enforced install to find myself in tty4 and some "other" users logged on to the other terminals. My folders would have lock icons on them after opening, my notication menu/toolbar crashed and hasn't returned on system reboot, some data transfers between removable storage returned input output errors while others worked fine(?). I also recieved this kernel bug output from the bug reporting tool but I have no idea what it means.
Also I was not loose with the security either I had removed unconfined login types (After setting up the system as I needed) meaning I couldn't even run root or sudo and neither could anyone else (asfar as I was aware). I pretty much increased selinux to its maximum boolean strictness and limited the _default_(Me included) account to a user from a _default_ unconfined (to actually be able to log in with the selinux boolean in place). Meaning they "the exploiters" were able to bypass selinux as a user account? How is that possible and even if you do root logon is disabled by selinux too?
At the moment I'm on a live cd trying to look for a way to custimise them as it seems it may be my only option.
Just a side note you can't just log in to tty4 by default without actively taking up spaces either by other users or your own use. Meaning since the tty login is automated 3 terminals were in use tty1, tty2 and tty3.
Which commands should I run to find out what is being done?
Edit: Just had my F12 x64 live cd taken down twice and had to hard reset as the toolbar disappeared. Took a photo of the last error message. I was just reading a pdf and using firefox at the time.
Is fedora usually this easy to hack?
I have set logwatch to report daily the logs, somehow since last week i get below message. A total of 1 possible successful probes were detected (the following URLs contain strings that match one or more of a listing of strings that indicate a possible exploit):
/cgi-bin/blocked.cgi?clientaddr=192.168.1.108&clientname=&clientident=&clientgroup=limitedaccess&targetclass= untrusted&url=http://adfarm.mediaplex.com/ad/fm/9608-84171-8772-2?
[code]...
I refrained from posting this in the Kernel Vulns thread earlier, due to its zero-day status. But now that the issue has been Slashdotted, there's no use in keeping us from publicly discussing this vulnerability. The link to the article (from which I quote below) is here. Brad Spengler's original announcement on the Dailydave mailing list is here.Quote:A researcher has published exploit code for a new vulnerability he discovered in the Linux kernel. The vulnerability is an especially interesting one in that the researcher who discovered it, Brad Spengler, has demonstrated that he can use the weakness to defeat many of the add-on security protections offered by SELinux and AppArmor.
View 9 Replies View RelatedRecently I had a Java exploit on Windows. Luckily Microsoft Security Essentials identified and removed it. Such things can happen on Linux as well, from what I've heard. Why does Linux offer no such detection?
View 14 Replies View RelatedI have installed 9.10 and do not have any sound at all. i did do a list of playback devices with aplay-l and it did not list anything. I looked in sound props and didn't find one either. I have had other versions of Ubuntu and had no problems. the machine I've loaded is a Toshiba laptop.
View 7 Replies View RelatedI'm trying to use this thread to set my laptop's resolution to 640x480. To do this, I need to use the addmode command which expects me to list an OUTPUT. What OUTPUT do I list? The "xrandr -q" command doesn't list any outputs.Here is the result of me typing "xrandr -q":
Code:
Screen 0: minimum 800 x 600, current 1024 x 768, maximum 1024 x 768
default connected 1024x768+0+0 0mm x 0mm
[code]...
I did some searching, but haven't found a good solution to this problem I'm having. While there are a lot of issues with syncing between my desktop and netbook (we'll get to them another time), I am really trying to get two folders from my desktop to sync to Ubuntu One. I followed the reinstall steps here a few times and it has almost fixed the problem.
My last issue is that my .mozilla folder won't sync at all. If I right click on it in Nautilus, I get a greyed out "stop syncing with Ubuntu One." I can't stop it and can't start it. If I do u1sdtool --list-folders, then this folder isn't shown. I've tried disconnecting, reconnecting, and a lot in between.My question is, is there a config file or something like that where maybe this .mozilla folder is still set up that I can just delete? Clearly, it thinks it's set up when it isn't and I'm not sure if there's somewhere on the filesystem that can be checked or cleared. One thing I did notice when I was going through the instructions above is that I don't have a .share folder and thus no /local/ubuntuone under that.
I have UBUNTU 9.10 Karmic Koala over Thinkpad R-61i. Whenever i boot my system i have the following message waiting for me,
One or more of the mounts listed in /etc/fstab cannot yet be mounted:
swap: waiting for UUID=00e09251-80bb-43dd-8a11-61e975fa3e09
Press Esc to enter a recovery shell
And once i press esc, my UBUNTU loads properly.
The file /etc/fstab have following content
# /etc/fstab: static file system information.
What i need to do repair this. And make my UBUNTU to perform a normal boot.
For some reason, my CD/DVD drive is not visible in Nautilus. I I can't see it either as a top-level item in Tree or Places views or in File System > /media. There is a /media/cdrom entry, but nothing in it, even with a DVD in the drive. When I type "sudo blkid," there is no entry for the DVD drive. It is physically connected and I can read from it when I dual-boot into Windows XP; just can't find it in Ubuntu
View 1 Replies View Related1: In my grub menu Windows 7 is listed, I don't know why. Win7 was installed on this computer before,but I formatted the HDD before I did a clean install of Ubuntu 10.10. How to remove it?
2: When I boot I don't get a boot image, only a blinking cursor in the upper left corner. Not a big deal, but I would like to have a normal boot image. Any ideas how to fix it? I tried googling but I only find old threads. My laptop is a Acer Aspire 7735Z
Graphic card is ATI Radeon HD 4570. BTW; I got no other problems what so ever. Everything works great really.
How do i run applications that i have installed, that are not listed in the application menu? ive installed many programs with no problem-- then, i couple that i have installed from the package manager state that they have installed successfully, yet i have no idea where to find them in any menus.
View 5 Replies View RelatedWe are working on a project to create a display wall of 8 monitors arranged as 2 high by 4 wide. Each monitor is connected to a single machine and all machines are networked with a master machine with its own, seperate monitor.
Our goal is to get the 8 machines to share a single desktop, with the master machine acting as the server. We have looked at using Xinerama or NMM, but we are unsure about how to get started configuring the multi-machine, multi-head display.
I just installed Karmic. My HDSP is detected (listed in aplay -l and alsamixer) and the firmware is loaded. No errors from dmesg.
Yet no sound... It is not listed in the Sound Preferences GUI.
I'm trying to install Ubuntu 9.10 on a Asus P5KPL-VM mainboard. However the installation doesn't recognize my partitions. If I just boot Ubuntu the partitions are recognized with GParted and by just mounting them and browsing in file explorer. I'm using a SATA disk. I've tried boot option pci=nommconf irqpoll as found in this thread [URL] with no success.
View 2 Replies View RelatedI was trying to install some Windows applications in Wine/PlayOnLinux. The result was not very useful for what I wanted and I removed all the application including wine and Playonlinux completely from my computer (9.10 64bit).But I was not really able to completely clean up what I did because when I right click on any files and use "OPEN WITH", I got a LONG list of application with many of them are uninstalled and duplicated.
View 9 Replies View RelatedKDE partition manager reports /dev/sda3 is currently type "unknown".I have tried reformatting this partition as linux swap, it says successfully done, but both Kde partition manager and gparted still immedietly report this partition as "unknown" again.
View 9 Replies View RelatedHow do I edit the Versions listed in GRUB?
I have at least 25 different Versions listed in my GRUB Screen but they are not in the menu.lst !?
I only use 2 of them.
I have windows installed in c drive and there are 3 other partitions namely e,d,f.I booted kubuntu/ubuntu live cd.The installer doesnt show any partitions.This is my windows:- http://imagebin.ca/view/Uj-KB26v.html
This is at kubuntu at installer step:- (Same is the case with ubuntu)http://imagebin.ca/view/wZBYBV.html
fdisk -l report:- http://imagebin.ca/view/CH8fiE6r.html
I tried alternate cd also...no change!
I'm trying to make the changes listed in post #5 here to my Inspiron 8000: There's no xorg.conf in Xubuntu 10.04. But I figured out how to create one, and I edited it as suggested. But there's no menu.lst in Xubuntu 10.04 either. That is, the file called "menu.lst" is located in
/usr/share/doc/memtest86+/examples
and it has no "defoptions" line. So how can I make the poster's suggested changes (i.e., do something functionally equivalent, assuming that's possible) to my newer system?
The title says it all really. I run Empathy, have used it for a while with both Google-chat and MSN protocols. I've been using it for a few months now and suddenly my MSN contacts have all disappeared.
People are able to contact me via MSN, and when their message window pops up I am able to respond. It says they are offline however.
I have tried listing all offline contacts but they still do not appear in the list.
I have tried uninstalling (including config files) and reinstalling but this wasn't successful either. When I reinstalled it still had details of my accounts so clearly the cofig files were not removed properly.
When I first started to install Ubuntu to my system, I got an error that told me Ubuntu was not successfully installed, so I restarted my computer and tried again. That time it works, and I'm thoroughly enjoying the OS. I noticed that when I start up my computer and I have the OS boot list, Ubuntu and Ubuntu safe mode are listed twice. How do I remove the 2nd one, and is it still installed on my other partition even though it said failed?
View 4 Replies View Related