Author: Yuri Gagarin

Local root vulnerability in pam-python

A vulnerability (CVE-2019-16729) has been identified in the pam-python PAM module, which allows connecting authentication modules in Python. If the vulnerable version of pam-python (which is not installed by default) is used, a local user can gain root access by manipulating the default environment variables processed in Python (for example, they can initiate saving a file with […]

Release of the Nextcloud 17 cloud storage

The release of the Nextcloud 17 cloud platform has been announced, evolving as a fork of the ownCloud project, created by the main developers of this system. Nextcloud and ownCloud allow deployment of a full cloud storage system on their server systems with support for synchronization and data sharing, as well as offering accompanying features such as tools for video conferencing, messaging, and, starting from the current release, integration of functions for.

Patches to restrict root access to the internals of the kernel have been accepted into the Linux kernel 5.4

Linus Torvalds has accepted a set of 'lockdown' patches into the upcoming release of the Linux kernel 5.4, proposed by David Howells (working at Red Hat) and Matthew Garrett (working at Google) to restrict root user access to the kernel. The functionality associated with 'lockdown' has been moved to an optionally loadable LSM module (Linux Security Module), which establishes a barrier between UID 0 and.

Release of strace 5.3

The release of strace 5.3 has been presented, a utility for diagnosing and debugging programs for operating systems that use the Linux kernel. The utility allows tracking and, starting from version 4.15, intervening in the interaction between the program and the kernel, including the system calls being made, signals generated, and changes in process state. Strace utilizes the ptrace mechanism for its operations. Starting from version 4.13, the release generation of the program has been synchronized.

Milton 1.9.0 Released – Computer Painting and Drawing Software

The release of Milton 1.9.0 has occurred, a drawing program for an infinite canvas oriented towards computer artists. Milton is written in C++ and Lua, licensed under GPLv3. It uses SDL and OpenGL for rendering. Binary builds are available for Windows x64. Despite the presence of build scripts for Linux and MacOS, there is no official support for these systems. If you want to compile it on your own, it may be.

Migration from Nginx to Envoy Proxy

Hello, Habr! I present to you the translation of the post: Migrating from Nginx to Envoy Proxy. Envoy is a high-performance distributed proxy server (written in C++) designed for individual services and applications, as well as a communication bus and 'universal data plane' developed for large microservice architectures 'service mesh'. The development took into account the solutions to problems that arose during the development of such […]

Wi-Fi at the Arkhangelskoye Estate Museum

In 2019, the Arkhangelskoye estate museum celebrated its 100th anniversary, during which extensive restoration work was carried out. A reliable Wi-Fi network was implemented in the park so that art enthusiasts could ask Alice about what they see and what the artist intended, while couples on benches could post selfies between kisses. Couples really love this park and buy tickets, but with each […]

Hyper-converged solution AERODISK vAIR. The core is the ARDFS file system.

Hello, readers of Habr. In this article, we are launching a series that will tell you about our developed hyper-converged system AERODISK vAIR. Initially, we wanted to cover everything in the first article, but the system is quite complex, so we'll tackle it piece by piece. We'll start with the story of how the system was created, dive into the ARDFS file system, which is the foundation of vAIR, and also […]

Exim 4.92.3 has been released, addressing the fourth critical vulnerability of the year.

An emergency release of the Exim mail server, version 4.92.3, has been published, fixing yet another critical vulnerability (CVE-2019-16928) that potentially allows remote code execution on the server via the transmission of a specially crafted string in the EHLO command. The vulnerability manifests itself after privilege escalation and is limited to code execution with the rights of an unprivileged user under which the incoming message handler runs. The issue occurs only in the […]

Support for TLS 1.0 and TLS 1.1 has been disabled in the nightly builds of Firefox.

In the nightly builds of Firefox, support for TLS 1.0 and TLS 1.1 is disabled by default (the setting security.tls.version.min is set to 3, establishing TLS 1.2 as the minimum version). In stable releases, TLS 1.0/1.1 is planned to be disabled in March 2020. Support for TLS 1.0/1.1 will be discontinued in Chrome 81, expected in January 2020. The TLS specification […]

Wine 4.17

The Wine 4.17 release for developers is now available. It fixes 14 bugs and includes 274 changes. Major changes: the Mono engine has been updated; support for compressed textures in the DXTn format has been added; an initial version of the Windows Script runtime library has been proposed; support for processing device change notifications via the XRandR API; RSA key generation support; seamless proxy support has been implemented for the ARM64 architecture […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster