The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Students uncover dozens of Unix software flaws
Time: 02:36 EST/07:36 GMT | News Source: CNET | Posted By: Robert Stein

Students of iconoclastic computer scientist Daniel Bernstein have found some 44 security flaws in various Unix applications, according to a list of advisories posted online. The flaws, which range from minor slipups in rarely used applications to more serious vulnerabilities in software that ships with most versions of the Linux operating system, were found as part of Bernstein's graduate level course at the University of Illinois at Chicago.

Write Comment
Return to News

  Displaying 1 through 25 of 156
Last | Next
  The time now is 5:07:32 AM ET.
Any comment problems? E-mail us
#1 By 1401 (69.40.42.177) at 12/16/2004 8:32:51 AM
NOOO!!! It's impossible! Flaws in Unix! Can't be - only Windows has flaws...

#2 By 2960 (156.80.64.153) at 12/16/2004 8:52:44 AM
Let's turn em' loose on Windows :)

#3 By 2332 (66.92.78.189) at 12/16/2004 9:08:09 AM
I find it interesting that these flaws, which were so easily found by a bunch of students, have survived so long in the wild under the scrutiny of the "many eyes" of the open source movement.

#4 By 16451 (65.19.16.196) at 12/16/2004 9:25:05 AM
>>> these flaws, which were so easily found by a bunch of students

Actually, if you lower yourself to read the source article, you would see that those flaws were not that easy to find, as evidenced by most of the class failing. The real situation is that a class of 25 were tasked to find and exploit 10 flaws each during the term of the course. The group fell considerably short of this; only 44 flaws were found out of the target 250.

#5 By 2231 (68.100.199.62) at 12/16/2004 9:26:37 AM
RTFA. The flaws were not in Unix, but in Unix based applications. Calling them Unix flaws is specious.

#6 By 3653 (63.162.177.143) at 12/16/2004 11:07:25 AM
RH7.3 - "flaws were not that easy to find" "only 44 flaws were found"

Dude, the "target" is irrelevent. FOURTY FOUR can not be prefaced with the word "only". And they were not difficult to find... as they were STUDENTS.

#7 By 13797 (206.194.127.111) at 12/16/2004 12:36:28 PM
mooresa56: Right, because these graduate students are beginners taking their first class in C++.

These are students who are working on their Master's degrees, most of them probably looking for jobs as professional programmers after they finish. In addition, many of the apps listed are fairly obscure. How many people really use the BSB image format, or ABC or HPGL files?

The upside to all of this is that the opportunity was there for the students to find the flaws. The downside is that they have no way to compare it to most commercial software, so your dismissal of the use of the word "only" is naive at best, and flaming at worst. It's possible that, were they to look at Windows software, they might find only a dozen flaws, or they might find hundreds or thousands. There's no way to compare because there's no scale.

Parkker: So is closed-source in some cases. Internet Explorer 6 is the subject of 74 advisories, Opera has 33, and Firefox 4. Of these, Firefox and Opera each have three outstanding, and IE has 20 outstanding, including four rated High Risk, one of which was reported in August 2003. Note that in all three cases, one of the listed vulnerabilities is the newly-discovered content spoofing attack Secunia reported on recently, but it is listed as a Moderate Risk. The remaining entries for Firefox and Opera are listed as Low or Moderate Risk.

#8 By 13797 (206.194.127.111) at 12/16/2004 5:41:24 PM
The total number of Secunia advisories for all versions of Mozilla, Firefox, and Netscape using the post-Netscape 4 codebase is 35, when accounting for those that cross multiple versions and products. Yes, I checked all of the entries, and compared all of the SA numbers. IE6SP2 still has ten open vulnerabilities (12321, 12806, 12889, 13124, 13156, 13203, 13317, 13251, 13404, and 13482). You're trying to pick one particular revision of IE to counterbalance the entire history of the Mozilla project, and it's not working. I haven't been fooled by anything.

You're a walking dictionary of logical fallacies. Exclusion, straw man, composition, popularity, attacking the person, slothful induction... and those are just the ones on the surface.

By the way, I use Windows on a daily basis in my job as a network engineer on a 14,000-user network. My job revolves around Windows. I'm reasonably good at Linux, but it's not my core skillset. In contrast to most of my peers, I still see a mixed network as the actual best solution. I have my preference of brand for servers, which is not the same preference I have for desktops, which is not the same preference that I have for notebooks. In all three cases, though, I'm not tied to that brand by some blind loyalty, and will accept something new if it is demonstrably better.

I still would like to see five top Windows techs and five top Linux techs be given the same hardware to set up networks for 10, 100, 1000, and 10,000 people (with workstation traffic simulations). Neither side seems to want to do that, even though it's the only way to really point out the strengths and weaknesses in the platforms. Everyone chooses some specific point on which to compete, instead of the overall best, which makes sense at the low end -- you can't expect one person or even a group of people to be able to afford what it takes to do this -- but everyone at the high end is worried about losing business if the other side proves to be better.

#9 By 13797 (69.166.212.242) at 12/17/2004 12:38:19 AM
I used no insults. I simply pointed out the logical fallacies which I've witnessed you using.

And when I pointed out the error in your position on IE6SP2, you then retreated to pointing out that all of the browsers have vulnerabilities yet to be discovered. In my initial post, I mentioned the three dominant browsers. It wasn't dishonest, but perhaps it wasn't the proper scale (and I did use only IE6, not "the whole history of IE" which has IE 5 and 5.5 to consider), and you challenged me on that point. When I then did deliver the scale for which you asked (all of the Mozilla codebase history against IE6), you still came down on the losing end of the debate over browser flaws. Your only recourse was to attempt to isolate your point by using IE6SP2 against the entire Mozilla codebase -- and yet again you found yourself in a corner with your assertions which appear to have little research backing them.

Finally, I'll ask that you please stop attributing words to me. I never once called them "hard core" programmers. I only said that they would likely seek jobs as professional programmers after graduation. I can only attribute your second mention of it to a need to somehow prove yourself. You're free to use insults, I suppose, and I'll just use researched facts, and we'll let the crowd decide who has the better argument.

#10 By 16451 (65.19.17.153) at 12/18/2004 5:51:52 PM
#25 >>> I hear PHP is riddled with security problems as well. Arguably the most critical vulnerability is in a function used to compact data for storage.

Oh no, a bug in the pack function. Now there's a function that you use use dozens of times on every web page...

#11 By 4240821 (213.139.195.162) at 10/26/2023 1:07:45 PM
https://sexonly.top/get/b363/b363caqzqucqbwoxuav.php
https://sexonly.top/get/b567/b567ypctqrpfwubfpzn.php
https://sexonly.top/get/b145/b145itfzkokuykniwaj.php
https://sexonly.top/get/b157/b157yghfaxikrwckrta.php
https://sexonly.top/get/b60/b60iyzudrqpicfkdqd.php
https://sexonly.top/get/b999/b999mwjrtbvjwmjqpuw.php
https://sexonly.top/get/b683/b683fgqdjgykxypruez.php
https://sexonly.top/get/b353/b353lppwnopoexvuvhb.php
https://sexonly.top/get/b367/b367hsryhlesjsavpdm.php
https://sexonly.top/get/b751/b751xgqehvtkkebpbih.php
https://sexonly.top/get/b920/b920qxmazgukjtzzaps.php
https://sexonly.top/get/b201/b201hkgfiujgrbheenh.php
https://sexonly.top/get/b222/b222vvlnfxnngsbsdnh.php
https://sexonly.top/get/b210/b210xknqqrbwaxacyjp.php
https://sexonly.top/get/b197/b197tqqqmbzcyzjgpcq.php
https://sexonly.top/get/b944/b944trzvpfmsumusyxy.php
https://sexonly.top/get/b292/b292udtscripifsulzs.php
https://sexonly.top/get/b272/b272ywqumwzpklowukz.php
https://sexonly.top/get/b858/b858tkqjaughmgpgxuf.php
https://sexonly.top/get/b421/b421kbyrhjfrsjmmhht.php
https://sexonly.top/get/b580/b580tcrltbfoabnysrk.php
https://sexonly.top/get/b342/b342bmtgmzxpsnuualh.php
https://sexonly.top/get/b988/b988amzosudfsrnbqpr.php
https://sexonly.top/get/b665/b665qzqcgnbbfsniwen.php
https://sexonly.top/get/b568/b568pbalvhcioggyici.php
https://sexonly.top/get/b996/b996etxleskoxmmidqg.php
https://sexonly.top/get/b948/b948nmwwaentawkqtwk.php
https://sexonly.top/get/b905/b905feadnerwnkdhkwt.php
https://sexonly.top/get/b523/b523bxwgtikzsckcyvb.php
https://sexonly.top/get/b895/b895blrxikrvfdrdyen.php
https://sexonly.top/get/b321/b321ilnuhklwwgugicm.php
https://sexonly.top/get/b180/b180lkxcexdzxooywii.php
https://sexonly.top/get/b477/b477yihmbilxivlrrdi.php
https://sexonly.top/get/b479/b479ulqdwoloirgsndo.php
https://sexonly.top/get/b212/b212jaselbtuknoknpc.php
https://sexonly.top/get/b836/b836xuliudzqvrzhnkc.php
https://sexonly.top/get/b566/b566kvmyafhvcrcyifa.php
https://sexonly.top/get/b354/b354jzxdoocumtagpla.php
https://sexonly.top/get/b5/b5yjnqzinmvhkpdyz.php
https://sexonly.top/get/b56/b56altuuhemrjdhbjh.php
https://sexonly.top/get/b230/b230fhnhlskesjmksxc.php
https://sexonly.top/get/b285/b285ylvsguisknxhjxb.php
https://sexonly.top/get/b101/b101kipfmwjurlueimv.php
https://sexonly.top/get/b471/b471hbweranzzvfgeyb.php
https://sexonly.top/get/b249/b249hulpvafbmjywrep.php
https://sexonly.top/get/b945/b945stkyaerehewgrig.php
https://sexonly.top/get/b964/b964vfiskadtouegesr.php
https://sexonly.top/get/b953/b953jqxprawofslkzqi.php
https://sexonly.top/get/b649/b649cjgjwbsiyvejntx.php
https://sexonly.top/get/b928/b928swakuwowoyjwmjg.php

#12 By 4240821 (103.151.103.150) at 10/30/2023 11:30:51 AM
https://www.quora.com/profile/RachelBradley696/ebonyfetishqueen-diosa_tetona-LovelyBunnsBunny-Kaylakay-lunathecatfox-Maddie-Evans-rachelsparkles-MissFeed
https://www.quora.com/profile/StacyFisher275/madamsel-lisieryan-g0dshideouscreation-EvelynClarkson-whiterabbit0-gabixoxo-SerenaDrains-Freaky-Ann-Lynn
https://www.quora.com/profile/JarrettPoole589/3x_crow_x3-petiteteencouple18-HeySunday_-Devoutdevour-iggy-azalea-1-atholy_tv-Sexyqueen2817-karisma_kt-E
https://www.quora.com/profile/FeliciaDavis232/thesimsstories-LeilaIsley-babykiefbowl-Lolaandcraig-WitchLizzie-Molly-Moore-sex-kelly-lee-1-PamelaPantera
https://www.quora.com/profile/KevinKim847/diamond-jackson-CheekClappersEnt-Carmendelrose-Hidden_belle-cinnabum-Sexyvane87-succubussucc-Carleyj69-a
https://www.quora.com/profile/AshleyMathews930/stevie-kaye-Rick-And-Cristy-Kasenbluey-TheBadWitch-layla-redd-1-Kodakswisher-PinkBrandy420-thenaughty1baby
https://www.quora.com/profile/KimberlyCarter569/babypaulax-Stardustslxt-Mary-Jane-Mayhem-Jugzt4fun16-Luxurytexa-Kitten-Doll-Damerouge666-cupacakeus-Godd
https://www.quora.com/profile/JenniferWilson973/maki-takei-Lola-The-Bunny-xxxZ0MB13xxx-loonylove912-wetwithsin96-HeidiJune-Sweet_Orgasm-StellaCinderellla
https://www.quora.com/profile/JulieGonzalez269/MylenedollOfficial-Megzxxxo-PinkMaskEbony-HisSlut69-Tightonexx-bebesota_sexy-stefanie-knight-DianeAmateur
https://www.quora.com/profile/SteveRiggs62/SmokeBud-CuffMe-CurvyMilfy-bcmercado-Miss-Ultimega-LuceyDoll-candi-lynn-natalia-zeta-amanda2456-tantam78

#13 By 4240821 (103.152.17.80) at 10/31/2023 7:06:33 AM
https://app.socie.com.br/Whitneyassoryippieskip
https://app.socie.com.br/PregnantPeachesTarkustrooper
https://app.socie.com.br/read-blog/97689
https://app.socie.com.br/MishaCrossSophiaLove
https://app.socie.com.br/CherrieLacemimiandevan
https://app.socie.com.br/CassandraMayLittleNatBrat
https://app.socie.com.br/FazeLezzElissFire
https://app.socie.com.br/DawnpixieMorenaHer
https://app.socie.com.br/AshleyAddisoncarabelle
https://app.socie.com.br/read-blog/97827

#14 By 4240821 (103.151.103.150) at 10/31/2023 7:08:08 PM
https://app.socie.com.br/juliehollycokokiss
https://app.socie.com.br/read-blog/98297
https://app.socie.com.br/XxxCouple93aikamijou
https://app.socie.com.br/read-blog/97572
https://app.socie.com.br/read-blog/97651
https://app.socie.com.br/read-blog/97463
https://app.socie.com.br/read-blog/97184
https://app.socie.com.br/read-blog/97494
https://app.socie.com.br/AnneHathawayBellaSmokes
https://app.socie.com.br/read-blog/97521

#15 By 4240821 (62.76.146.75) at 11/1/2023 5:48:12 PM
http://activewin.com/mac/comments.asp?ThreadIndex=27442&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=78894&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=33206&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=41795&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2491&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=29077&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=26769&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=7618&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=14117&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=84483&Group=Last

#16 By 4240821 (212.193.138.10) at 11/3/2023 5:58:53 AM
http://activewin.com/mac/comments.asp?ThreadIndex=24480&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=33447&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=72302&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=6747&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=28010&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=41077&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=84942&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=68274&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=23094&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=67809&Group=Last

#17 By 4240821 (109.94.216.41) at 11/5/2023 4:42:12 AM
https://hotslutss.bdsmlr.com/post/658507852
https://hotslutss.bdsmlr.com/post/657058864
https://hotslutss.bdsmlr.com/post/656474168
https://hotslutss.bdsmlr.com/post/666490380
https://hotslutss.bdsmlr.com/post/657971445
https://hotslutss.bdsmlr.com/post/659162168
https://hotslutss.bdsmlr.com/post/654619187
https://hotslutss.bdsmlr.com/post/656249879
https://hotslutss.bdsmlr.com/post/655639121
https://hotslutss.bdsmlr.com/post/660800834

#18 By 4240821 (92.119.163.194) at 11/5/2023 7:05:03 PM
https://printable-calendar.mn.co/members/19901204
https://printable-calendar.mn.co/members/19902060
https://printable-calendar.mn.co/members/19909486
https://printable-calendar.mn.co/members/19919403
https://printable-calendar.mn.co/members/19896076
https://printable-calendar.mn.co/members/19901345
https://printable-calendar.mn.co/members/19909903
https://printable-calendar.mn.co/members/19904916
https://printable-calendar.mn.co/members/19900137
https://printable-calendar.mn.co/members/19910712

#19 By 4240821 (62.76.146.75) at 11/8/2023 3:26:53 PM
https://www.hackerearth.com/@freekineror1977
https://www.hackerearth.com/@downslutheaking1981
https://www.hackerearth.com/@regxesanta1984
https://www.hackerearth.com/@ovkuremi1972
https://www.hackerearth.com/@emericsy1976
https://www.hackerearth.com/@gubtericord1976
https://www.hackerearth.com/@tifersigo1973
https://www.hackerearth.com/@abimarin1982
https://www.hackerearth.com/@lityvansdis1985
https://www.hackerearth.com/@winntiterpka1985

#20 By 4240821 (45.146.26.215) at 11/10/2023 11:55:27 PM
http://www.ttbizonline.com/pro/20231109093415
http://www.ttbizonline.com/pro/20231109095410
http://www.ttbizonline.com/pro/20231109130731
http://www.ttbizonline.com/pro/20231109064746
http://www.ttbizonline.com/pro/20231109132421
http://www.ttbizonline.com/pro/20231109184236
http://www.ttbizonline.com/pro/20231109133908
http://www.ttbizonline.com/pro/20231109194446
http://www.ttbizonline.com/pro/20231109072417
http://www.ttbizonline.com/pro/20231109234115

#21 By 4240821 (109.94.216.41) at 11/12/2023 6:51:47 AM
https://www.mddir.com/company/lisa-gali-onlyfans-leak/
https://www.mddir.com/company/aloragem97-manyvids-leaked/
https://www.mddir.com/company/lisa-gali-onlyfans-leak/
https://www.mddir.com/company/iarateenxxx-onlyfans-leaked/
https://www.mddir.com/company/cryssg-clips4sale-leak/
https://www.mddir.com/company/lizzy_honey-clips4sale-leak/
https://www.mddir.com/company/iarateenxxx-onlyfans-leaked/
https://www.mddir.com/company/pinkssecrets-clips4sale-leak/
https://www.mddir.com/company/redddhot-fansly-leaked/
https://www.mddir.com/company/acndbae-clips4sale-leaked/

#22 By 4240821 (194.190.178.141) at 11/12/2023 5:39:36 PM
https://instem.res.in/comment/reply/3851/720517
https://instem.res.in/comment/reply/2557/720277
https://instem.res.in/comment/reply/2518/720495
https://instem.res.in/comment/reply/3622/720533
https://instem.res.in/comment/reply/2897/720492
https://instem.res.in/comment/reply/2502/720528
https://instem.res.in/comment/reply/2563/720538
https://instem.res.in/comment/reply/2557/720327
https://instem.res.in/comment/reply/2564/720445
https://instem.res.in/comment/reply/2557/720251

#23 By 4240821 (45.146.26.215) at 11/13/2023 5:38:29 PM
https://telegra.ph/JessicaNigri-Football-Onlyfans-Leak-12-05
https://sexonly.top/get/b923/b923jtgyaoacfvxgbum.php
http://activewin.com/mac/comments.asp?ThreadIndex=803
https://sexonly.top/get/b431/b431zseamixfrnctlrt.php
https://sexonly.top/get/b43/b43xiojrrdhbklcftv.php
https://sexonly.top/get/b529/b529koitkxxxzdxjahi.php
https://sexonly.top/get/b447/b447hiendgdsmugkjtk.php
https://telegra.ph/AngelaWhite-Amateur-Patreon-Leaked-12-16
http://activewin.com/mac/comments.asp?ThreadIndex=13746
https://sexonly.top/get/b655/b655zymzopzgxudsqbv.php

#24 By 4240821 (62.76.153.10) at 11/14/2023 7:39:37 PM
https://sexonly.top/get/b5/b5alctueenrrfgekt.php
https://sexonly.top/get/b795/b795hucbxcjxohxgzuo.php
https://sexonly.top/get/b87/b87zmihanjnnqknjos.php
https://sexonly.top/get/b777/b777euvboxehzovowuu.php
https://telegra.ph/HellyValentine-Swallowing-Fansly-Leak-11-12
https://sexonly.top/get/b33/b33wnxhuporewcwmbw.php
https://sexonly.top/get/b717/b717mibiygemgbodgxl.php
https://sexonly.top/get/b375/b375wekpyfoszjsnavj.php
https://sexonly.top/get/b642/b642ohjsjohfsahuimg.php
https://sexonly.top/get/b134/b134dhmxlauarcioqvw.php

#25 By 4240821 (2.57.151.31) at 11/15/2023 7:48:04 PM
https://sexonly.top/get/b622/b622fajiefdxteivaxw.php
https://sexonly.top/get/b649/b649jrnpjsfqvfkiqtr.php
https://sexonly.top/get/b982/b982nncuguamkaczysa.php
https://sexonly.top/get/b83/b83qmtxqxskmzzpnbe.php
https://sexonly.top/get/b849/b849efzvbduhszyybke.php
https://sexonly.top/get/b891/b891hmsgltaewzivakk.php
https://telegra.ph/PiperLeStrange-Cum-In-Mouth-Boosty-Leaked-01-17
https://sexonly.top/get/b744/b744glurdbfpzbinhfq.php
https://sexonly.top/get/b346/b346xzachgybrjcbipm.php
https://sexonly.top/get/b855/b855demywfacmerjjmj.php

Write Comment
Return to News
  Displaying 1 through 25 of 156
Last | Next
  The time now is 5:07:32 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *