Tobias Richter reported a problem with faxcron, xferstats and recvstats as provided in hylafax-v4.0pl2. These programs can be used to execute arbitrary awk programs. If you are using hylafax, disabling these scripts is recommended; that should not break hylafax.

A new problem with locate has been reported by Crispin Cowan. It is affected by long filenames, much as bash was in recently reported exploits. No fixes have been reported yet, but they should start rolling in soon.

Yamamoto Hirotaka has written a short guide on getting started with SSH2. It is targeted at people using SSH1 now but who plan on switching to SSH2.

From the ISN mailing list, we found this hacking timeline, which you may find amusing.

September 24, 1998


