Language Selection

English French German Italian Portuguese Spanish

Security Flaws Found in Mplayer and Elm

Filed under
Security

Two serious security flaws have turned up in software widely distributed with Linux and Unix. The bugs affect Electronic Mail for Unix (Elm), a venerable e-mail client still used by many Linux and Unix systems administrators, and Mplayer, a cross-platform movie player that is one of the most popular of its kind on Linux.

The Elm flaw involves a boundary error when the client reads an e-mail's "Expires" header. A specially crafted e-mail could exploit the bug to cause a buffer overflow and execute malicious code on a system, according to security researchers.

The bug in Mplayer is the latest media-player bug to plague systems administrators. Widely used desktop applications such as media players are more difficult to patch than server-side bugs, because there are many times more copies in use, often without the knowledge of IT managers.

The flaw affects Mplayer versions 1.0pre7 and earlier and hasn't been patched, according to an advisory from FrSIRT.

Full Story.

More in Tux Machines

Linux Mint Xfce: Moving From Maya to Rebecca

Here’s the problem. For the last couple of years or so we’ve been using Mint’s Xfce edition of Maya (that would be version 13 for those who read the box scores) on nearly all of the machines here at FOSS Force. As Maya will be supported until 2017, we had absolutely no plans to make any upgrades until then, as taking time out for the tedious process of upgrading our machines isn’t one of my favorite things to do — and I’m the one who’d be doing the upgrading. Read more

Google turns its Android font Roboto into an open source project

Designed by Christian Robinson, the Roboto font files were first released in 2011 under the Apache license. Now, the company is organizing the files and the font production toolchain into a fully realized open source project on Github. Read more

New websites for Fedora 22

We started not long time ago, just a few days after F22 Beta release and it was challenging to finish all the work for these websites, collect informations from Spin SIGs, get legal approval, make new translation resources and and and. Read more Also: Fedora 22 will contain some fc21 packages statscache - thoughts on a new Fedora Infrastructure backend service

Here’s how to make your Ubuntu Desktop beautiful

So instead of hurling insults at the confused penguin nestlings, I have decided to help by giving you my own guide on how to make Ubuntu beautiful. Please note there are many ways to do this, this is just my way and because I detest the Dock-style launchers (bottom of the screen) do not ask me about them.If I wanted a Mac I would buy a Mac and use their Docking feature. Who am I kidding here, If I wanted a Mac, I would not be able to afford a Mac. Read more