Ubuntu closes root hole

A flaw in the module pam_motd (message of the day), which displays the daily motto and other information after login (to the shell), can be exploited under Ubuntu to expand access rights. Attackers can exploit this vulnerability to gain root access. Ubuntu has already provided a patch for the flaw. Operators of multi-users systems should [...]

Get Faster Download Speeds for Ubuntu Packages with Synaptic

Ubuntu has a great network of mirrors all over the world, allowing you to download updates from a server geographically close to wherever you are. However, in the age of broadband, the speed of your connection and how close you are to a server has less to do with the speed of downloads than the [...]

A Late X Server 1.7 Means No Update For Ubuntu 9.10

There’s twelve days left until the release of X Server 1.7 and X.Org 7.5! Wait, there still is not even an X Server 1.7 Beta, which should have happened last month, so chances are slim to none on seeing a final release this month. The release schedule for X Server 1.7 / X.Org 7.5 has [...]

Rethinking Ubuntu’s Update Policy…Or Not

One of the timeless challenges of open-source development is keeping software as up-to-date as possible while also maximizing stability. With this difficulty in mind, Ubuntu’s developers recently discussed the operating system’s policy on updates. Here’s the story, with some thoughts. Sebastien Bacher pointed last Wednesday to the dilemma of delivering Gnome updates to end-users in [...]

Updated git packages for Ubuntu Intrepid

I use git quite a lot, for my plugin development and for kernel compiling. I have been creating packages of the latest version for Ubuntu for quite a while. Today I decided to make these packages available to the public by using the Launchpad PPA repository. At the moment I only offer packages for Ubuntu [...]

Ubuntu issues big PHP update

The Ubuntu development team yesterday released a series of security fixes for PHP running on Ubuntu 6.06 LTS, 7.04, 7.10 and Ubuntu 8.04 LTS. The updates fix a number of security risks in PHP, including a problem with PHP not properly checking the length of the string parameter to the fnmatch function. An attacker could [...]

Important Security Advisory

A weakness has been discovered in the random number generator used by OpenSSL on Debian and Ubuntu systems. As a result of this weakness, certain encryption keys are much more common than they should be, such that an attacker could guess the key through a brute-force attack given minimal knowledge of the system. This particularly [...]

Important Security Advisory

A weakness has been discovered in the random number generator used by OpenSSL on Debian and Ubuntu systems. As a result of this weakness, certain encryption keys are much more common than they should be, such that an attacker could guess the key through a brute-force attack given minimal knowledge of the system. This particularly [...]

Ubuntu update for cups

Ubuntu has issued an update for cups. This fixes a vulnerability which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system, and a security issue which can be exploited by malicious, local users to perform certain actions with escalated privileges. Read more at Secunia