Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 16187 - app-admin/usermin
Summary: app-admin/usermin
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: New packages (show other bugs)
Hardware: All Linux
: Highest critical (vote)
Assignee: Gentoo Security
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2003-02-22 13:34 UTC by Daniel Ahlberg (RETIRED)
Modified: 2003-02-24 06:40 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Daniel Ahlberg (RETIRED) gentoo-dev 2003-02-22 13:34:17 UTC
[prev in list] [next in list] [prev in thread] [next in thread]  
 
List:     webmin-announce 
Subject:  Webmin version 1.070 released - fixes security hole 
From:     Jamie Cameron <jcameron () webmin ! com> 
Date:     2003-02-22 1:39:16 
[Download message RAW] 
 
Due to a remotely exploitable security hole being discovered that 
effects all previous Webmin releases, version 1.070 is now available 
for download from http://www.webmin.com/ and mirror sites. This 
problem was reported by Cintia M. Imanishi, but fortunately there 
have been no known malicious exploits of it yet. However, all users 
should upgrade to 1.070 as soon as possible. 
 
Along with the security fix, this release also includes the following 
changes : 
 
  * Added find and replace and goto line support to the File Manager 
    module's editor 
  * Init scripts created by Webmin on Linux now start in runlevels 
    2, 3 and 5, instead of just the current runlevel 
  * Fixed a bug that caused problems when logging in on OSX, and 
    stopped Java applets from working under IE 
  * Added an ACL option in the Sendmail module to control which domains 
    can be seen in the mail queue 
  * Added a mode in the Webmin Servers Index to prompt for a logging 
    when connecting to a server 
 
Also available is Usermin 1.000 which fixes the exact same security 
hole. It includes the same File Manager features, as well as support 
for IMAP folders and an IMAP inbox in the Read Mail module. 
 
As always, please send me any bug reports or feature suggestions that 
you might have. 
 
   - Jamie 
 
 
 
 
------------------------------------------------------- 
This SF.net email is sponsored by: SlickEdit Inc. Develop an edge. 
The most comprehensive and flexible code editor you can use. 
Code faster. C/C++, C#, Java, HTML, XML, many more. FREE 30-Day Trial. 
www.slickedit.com/sourceforge 
- 
Forwarded by the Webmin announcements list at webadmin-announce@lists.sourceforge.net 
To remove yourself from this list, go to 
http://lists.sourceforge.net/lists/listinfo/webadmin-announce 
[prev in list] [next in list] [prev in thread] [next in thread]  
 
 
 Configure Your Environment | About MARC | We're Hiring! | Want to add a list? Tell us about it. | 
10East
Comment 1 Daniel Ahlberg (RETIRED) gentoo-dev 2003-02-24 06:40:44 UTC
glsa sent