<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.2.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>Emanuele Gentili &#124; emgent blog</title>
	<link>http://en.emanuele-gentili.com</link>
	<description></description>
	<pubDate>Thu, 10 Apr 2008 23:35:23 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.2</generator>
	<language>en</language>
			<item>
		<title>Shell history</title>
		<link>http://en.emanuele-gentili.com/index.php/2008/04/11/shell-history/</link>
		<comments>http://en.emanuele-gentili.com/index.php/2008/04/11/shell-history/#comments</comments>
		<pubDate>Thu, 10 Apr 2008 23:35:23 +0000</pubDate>
		<dc:creator>emgent</dc:creator>
		
		<category><![CDATA[Developement]]></category>

		<guid isPermaLink="false">http://en.emanuele-gentili.com/index.php/2008/04/11/shell-history/</guid>
		<description><![CDATA[emgent@emanuele-gentili:~$ history&#124;awk &#8216;{a[$2]++ } END{for(i in a){print a[i] &#8221; &#8221; i}}&#8217; &#124;sort -rn&#124;head
108 ls
97 vim
97 cd
27 sudo
20 bzr
18 rm
16 git
11 python
10 quilt
9 wget
]]></description>
			<content:encoded><![CDATA[<p>emgent@emanuele-gentili:~$ history|awk &#8216;{a[$2]++ } END{for(i in a){print a[i] &#8221; &#8221; i}}&#8217; |sort -rn|head<br />
108 ls<br />
97 vim<br />
97 cd<br />
27 sudo<br />
20 bzr<br />
18 rm<br />
16 git<br />
11 python<br />
10 quilt<br />
9 wget</p>
]]></content:encoded>
			<wfw:commentRss>http://en.emanuele-gentili.com/index.php/2008/04/11/shell-history/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Security Corner 0.3: lighttpd Denial of Service</title>
		<link>http://en.emanuele-gentili.com/index.php/2008/04/07/security-corner-03-lighttpd-denial-of-service/</link>
		<comments>http://en.emanuele-gentili.com/index.php/2008/04/07/security-corner-03-lighttpd-denial-of-service/#comments</comments>
		<pubDate>Mon, 07 Apr 2008 20:24:55 +0000</pubDate>
		<dc:creator>emgent</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://en.emanuele-gentili.com/index.php/2008/04/07/security-corner-03-lighttpd-denial-of-service/</guid>
		<description><![CDATA[Affected by security bug quite significant, lighttpd is still be vulnerable to Ubuntu repositories.
Lighttpd 1.4.19 and earlier allows remote attackers to cause a denial of service (active SSL connection loss) by triggering an SSL error, such as disconnecting before a download has finished, which causes all active SSL connections to be lost.
Vulnerable Version:

Hardy (upgraded)
Gutsy
 Feisty
Edgy

CVE

 [...]]]></description>
			<content:encoded><![CDATA[<p>Affected by security bug quite significant, lighttpd is still be vulnerable to Ubuntu repositories.</p>
<p>Lighttpd 1.4.19 and earlier allows remote attackers to cause a denial of service (active SSL connection loss) by triggering an SSL error, such as disconnecting before a download has finished, which causes all active SSL connections to be lost.</p>
<p><strong>Vulnerable Version:</strong></p>
<ul>
<li>Hardy (upgraded)</li>
<li>Gutsy</li>
<li> Feisty</li>
<li>Edgy</li>
</ul>
<p class="portletBody"><strong>CVE</strong></p>
<ul>
<li class="cve">           <a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1531" title="CVE-2008-1531">2008-1531</a></li>
</ul>
<p><strong>Debdiffs:</strong></p>
<ul>
<li><a href="http://launchpadlibrarian.net/13140122/hardy_lighttpd_1.4.19-0ubuntu3.debdiff">hardy_lighttpd_1.4.19-0ubuntu3.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/13142685/gutsy_security_lighttpd_1.4.18-1ubuntu1.4.debdiff">gutsy_security_lighttpd_1.4.18-1ubuntu1.4.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/13155609/feisty_security_lighttpd_1.4.13-9ubuntu4.6.debdiff">feisty_security_lighttpd_1.4.13-9ubuntu4.6.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/13178597/edgy_security_lighttpd_1.4.13%7Er1370-1ubuntu1.7.debdiff">edgy_security_lighttpd_1.4.13~r1370-1ubuntu1.7.debdiff</a></li>
</ul>
<p align="left"><strong>Upgrade by .deb packages:</strong></p>
<ul>
<li><a href="http://launchpadlibrarian.net/13142519/lighttpd_1.4.18-1ubuntu1.4%7Eemgentsecurity0_i386.deb">lighttpd_1.4.18-1ubuntu1.4~emgentsecurity0_i386.deb</a> (Gutsy i386)</li>
<li><a href="http://launchpadlibrarian.net/13142168/lighttpd_1.4.18-1ubuntu1.4%7Eemgentsecurity0_amd64.deb">lighttpd_1.4.18-1ubuntu1.4~emgentsecurity0_amd64.deb</a> (Gutsy amd64)</li>
<li><a href="http://launchpadlibrarian.net/13155588/lighttpd_1.4.13-9ubuntu4.6%7Eemgentsecurity0_i386.deb">lighttpd_1.4.13-9ubuntu4.6~emgentsecurity0_i386.deb</a> (Feisty i386)</li>
<li><a href="http://launchpadlibrarian.net/13155541/lighttpd_1.4.13-9ubuntu4.6%7Eemgentsecurity0_amd64.deb">lighttpd_1.4.13-9ubuntu4.6~emgentsecurity0_amd64.deb</a> (Feisty amd64)</li>
<li><a href="http://launchpadlibrarian.net/13178245/lighttpd_1.4.13%7Er1370-1ubuntu1.7%7E1emgentsecurity0_i386.deb">lighttpd_1.4.13~r1370-1ubuntu1.7~1emgentsecurity0_i386.deb</a> (Edgy i386)</li>
<li><a href="http://launchpadlibrarian.net/13178297/lighttpd_1.4.13%7Er1370-1ubuntu1.7%7E1emgentsecurity0_amd64.deb">lighttpd_1.4.13~r1370-1ubuntu1.7~1emgentsecurity0_amd64.deb</a> (Edgy amd64)</li>
</ul>
<p align="left">&nbsp;</p>
<p align="left"><strong>Upgrade by Repository:</strong></p>
<ul>
<li>Gutsy</li>
</ul>
<pre style="border: 1px solid gray; padding: 0.3em" id="sources-list-entries">deb <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb">gutsy</span> main
deb-src <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb-src">gutsy</span> main</pre>
<p align="left"><strong>apt-get update</strong></p>
<p align="left"><strong>apt-get upgrade</strong></p>
<p align="left">&nbsp;</p>
<ul>
<li> Feisty</li>
</ul>
<pre style="border: 1px solid gray; padding: 0.3em" id="sources-list-entries">deb <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb">feisty</span> main
deb-src <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb-src">feisty</span> main</pre>
<p align="left"><strong> apt-get update</strong></p>
<p align="left"><strong> apt-get upgrade</strong></p>
<p align="left">&nbsp;</p>
<ul>
<li>Edgy</li>
</ul>
<pre style="border: 1px solid gray; padding: 0.3em" id="sources-list-entries">deb <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb">edgy</span> main
deb-src <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb-src">edgy</span> main</pre>
<p align="left"><strong> apt-get update</strong></p>
<p align="left"><strong> apt-get upgrade</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://en.emanuele-gentili.com/index.php/2008/04/07/security-corner-03-lighttpd-denial-of-service/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Horde3 security patch preview</title>
		<link>http://en.emanuele-gentili.com/index.php/2008/03/27/horde3-security-patch-preview/</link>
		<comments>http://en.emanuele-gentili.com/index.php/2008/03/27/horde3-security-patch-preview/#comments</comments>
		<pubDate>Thu, 27 Mar 2008 16:11:19 +0000</pubDate>
		<dc:creator>emgent</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://en.emanuele-gentili.com/index.php/2008/03/27/horde3-security-patch-preview/</guid>
		<description><![CDATA[Affected by security bug quite significant, horde3 is still be vulnerable to Ubuntu repositories.
Directory traversal vulnerability in Horde 3.1.6, Groupware before 1.0.5, and Groupware Webmail Edition before 1.0.6, when running with certain
configurations, allows remote authenticated users to read and execute arbitrary files via &#8220;..&#8221; sequences and a null byte in the theme name.
Fix directory traversal [...]]]></description>
			<content:encoded><![CDATA[<p>Affected by security bug quite significant, horde3 is still be vulnerable to Ubuntu repositories.</p>
<p>Directory traversal vulnerability in Horde 3.1.6, Groupware before 1.0.5, and Groupware Webmail Edition before 1.0.6, when running with certain<br />
configurations, allows remote authenticated users to read and execute arbitrary files via &#8220;..&#8221; sequences and a null byte in the theme name.<br />
Fix directory traversal vulnerability in Registry.php which allows an attacker to read and execute arbitrary local files via crafted<br />
path sequences.</p>
<p><strong>Vulnerable Version:</strong></p>
<ul>
<li>Hardy  (upgraded)</li>
<li>Gutsy</li>
<li> Feisty</li>
<li>Edgy</li>
<li>Dapper</li>
</ul>
<p class="portletBody"><strong>CVE</strong></p>
<ul>
<li class="cve">           <a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1284" title="CVE-2008-1284">2008-1284</a></li>
</ul>
<p><strong>Debdiffs:</strong></p>
<ul>
<li><a href="http://launchpadlibrarian.net/12920791/gutsy_horde3_3.1.4-1ubuntu0.1.debdiff">gutsy_horde3_3.1.4-1ubuntu0.1.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/12921013/feisty_horde3_3.1.3-4ubuntu0.1.debdiff">feisty_horde3_3.1.3-4ubuntu0.1.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/12921547/edgy_horde3_3.1.3-1ubuntu0.1.debdiff">edgy_horde3_3.1.3-1ubuntu0.1.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/12921654/dapper_horde3_3.1.1-1ubuntu0.1.debdiff">dapper_horde3_3.1.1-1ubuntu0.1.debdiff</a></li>
</ul>
<p align="left"><strong>Upgrade by .deb packages:</strong></p>
<ul>
<li><a href="http://launchpadlibrarian.net/12921874/horde3_3.1.4-1ubuntu0.1%7Eemgentsecurity0_all.deb">horde3_3.1.4-1ubuntu0.1~emgentsecurity0_all.deb</a> (Gutsy)</li>
<li><a href="http://launchpadlibrarian.net/12921957/horde3_3.1.3-4ubuntu0.1%7Eemgentsecurity0_all.deb">horde3_3.1.3-4ubuntu0.1~emgentsecurity0_all.deb</a> (Feisty)</li>
<li><a href="http://launchpadlibrarian.net/12921941/horde3_3.1.3-1ubuntu0.1%7Eemgentsecurity0_all.deb">horde3_3.1.3-1ubuntu0.1~emgentsecurity0_all.deb</a> (Edgy)</li>
<li><a href="http://launchpadlibrarian.net/12921946/horde3_3.1.1-1ubuntu0.1%7Eemgentsecurity0_all.deb">horde3_3.1.1-1ubuntu0.1~emgentsecurity0_all.deb</a> (Dapper)</li>
</ul>
<p align="left"><strong>Upgrade by Repository:</strong></p>
<ul>
<li>Gutsy</li>
</ul>
<pre style="border: 1px solid gray; padding: 0.3em" id="sources-list-entries">deb <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb">gutsy</span> main
deb-src <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb-src">gutsy</span> main</pre>
<p align="left"> apt-get update</p>
<p align="left">apt-get upgrade</p>
<p align="left">&nbsp;</p>
<ul>
<li> Feisty</li>
</ul>
<pre style="border: 1px solid gray; padding: 0.3em" id="sources-list-entries">deb <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb">feisty</span> main
deb-src <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb-src">feisty</span> main</pre>
<p align="left"> apt-get update</p>
<p align="left"> apt-get upgrade</p>
<p align="left">&nbsp;</p>
<ul>
<li>Edgy</li>
</ul>
<pre style="border: 1px solid gray; padding: 0.3em" id="sources-list-entries">deb <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb">edgy</span> main
deb-src <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb-src">edgy</span> main</pre>
<p align="left"> apt-get update</p>
<p align="left"> apt-get upgrade</p>
<p align="left">&nbsp;</p>
<ul>
<li>Dapper</li>
</ul>
<pre style="border: 1px solid gray; padding: 0.3em" id="sources-list-entries">deb <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> dapper<span id="series-deb"></span> main
deb-src <a href="http://ppa.launchpad.net/emgent/ubuntu">http://ppa.launchpad.net/emgent/ubuntu</a> <span id="series-deb-src">dapper</span> main</pre>
<p align="left"> apt-get update</p>
<p align="left"> apt-get upgrade</p>
]]></content:encoded>
			<wfw:commentRss>http://en.emanuele-gentili.com/index.php/2008/03/27/horde3-security-patch-preview/feed/</wfw:commentRss>
		</item>
		<item>
		<title>lighttpd security patch preview</title>
		<link>http://en.emanuele-gentili.com/index.php/2008/03/11/lighttpd-security-patch-preview/</link>
		<comments>http://en.emanuele-gentili.com/index.php/2008/03/11/lighttpd-security-patch-preview/#comments</comments>
		<pubDate>Tue, 11 Mar 2008 14:30:40 +0000</pubDate>
		<dc:creator>emgent</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://en.emanuele-gentili.com/index.php/2008/03/11/lighttpd-security-patch-preview/</guid>
		<description><![CDATA[Affected by security bug quite significant, lighttpd is still be vulnerable to Ubuntu repositories.
mod_userdir in lighttpd 1.4.18 and earlier, when userdir.path is not set, uses a default of $HOME, which might allow remote attackers to read arbitrary files, as demonstrated by accessing the ~nobody directory.
 Hence a preview of the bug and my relative debdiff [...]]]></description>
			<content:encoded><![CDATA[<p>Affected by security bug quite significant, lighttpd is still be vulnerable to Ubuntu repositories.</p>
<p>mod_userdir in lighttpd 1.4.18 and earlier, when userdir.path is not set, uses a default of $HOME, which might allow remote attackers to read arbitrary files, as demonstrated by accessing the ~nobody directory.</p>
<p id="result_box" dir="ltr"> Hence a preview of the bug and my relative debdiff that will be placed in a circle in the mirror:</p>
<h3 align="center"><strong>lighttpd</strong></h3>
<p><strong>Vulnerable Version</strong>:</p>
<ul>
<li>Hardy</li>
<li>Gutsy</li>
<li> Feisty</li>
<li>Edgy</li>
<li>Dapper</li>
</ul>
<p class="portletBody"><strong>CVE</strong></p>
<ul>
<li class="cve">           <a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1270" title="CVE-2008-1270">2008-1270</a></li>
</ul>
<p><strong>Debdiff Relatives:</strong></p>
<ul>
<li><a href="http://launchpadlibrarian.net/12574001/hardy_lighttpd_1.4.18-1ubuntu6.debdiff">hardy_lighttpd_1.4.18-1ubuntu6.debdiff</a> (uploaded in hardy)</li>
<li><a href="http://launchpadlibrarian.net/12574214/gutsy_lighttpd_1.4.18-1ubuntu1.3.debdiff">gutsy_lighttpd_1.4.18-1ubuntu1.3.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/12574269/feisty_lighttpd_1.4.13-9ubuntu4.5.debdiff">feisty_lighttpd_1.4.13-9ubuntu4.5.debdiff</a></li>
<li>         <a href="http://launchpadlibrarian.net/12574336/edgy_lighttpd_1.4.13%7Er1370-1ubuntu1.6.debdiff">edgy_lighttpd_1.4.13~r1370-1ubuntu1.6.debdiff</a></li>
<li>         <a href="http://launchpadlibrarian.net/12575809/dapper_lighttpd_1.4.11-3ubuntu3.8.debdiff">dapper_lighttpd_1.4.11-3ubuntu3.8.debdiff</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://en.emanuele-gentili.com/index.php/2008/03/11/lighttpd-security-patch-preview/feed/</wfw:commentRss>
		</item>
		<item>
		<title>VLC security patch preview</title>
		<link>http://en.emanuele-gentili.com/index.php/2008/03/11/vlc-security-patch-preview/</link>
		<comments>http://en.emanuele-gentili.com/index.php/2008/03/11/vlc-security-patch-preview/#comments</comments>
		<pubDate>Tue, 11 Mar 2008 02:05:54 +0000</pubDate>
		<dc:creator>emgent</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://en.emanuele-gentili.com/index.php/2008/03/11/vlc-security-patch-preview/</guid>
		<description><![CDATA[Affected by security bug quite significant, VLC is still be vulnerable to Ubuntu repositories.
 Hence a preview of the bug and my relative debdiff that will be placed in a circle in the mirror:
VLC
Vulnerable Version:

Hardy
Gutsy
 Feisty
Edgy
Dapper

CVE

           2008-0984

Debdiff Relatives:

hardy_vlc_0.8.6.release.d-0ubuntu3.1.debdiff
gutsy_vlc_0.8.6.release.c-0ubuntu5.1.debdiff
feisty_vlc_0.8.6.release-0ubuntu4.1.debdiff
        [...]]]></description>
			<content:encoded><![CDATA[<p>Affected by security bug quite significant, VLC is still be vulnerable to Ubuntu repositories.</p>
<p id="result_box" dir="ltr"> Hence a preview of the bug and my relative debdiff that will be placed in a circle in the mirror:</p>
<h3 align="center"><strong>VLC</strong></h3>
<p><strong>Vulnerable Version</strong>:</p>
<ul>
<li>Hardy</li>
<li>Gutsy</li>
<li> Feisty</li>
<li>Edgy</li>
<li>Dapper</li>
</ul>
<p class="portletBody"><strong>CVE</strong></p>
<ul>
<li class="cve">           <a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0984" title="CVE-2008-0984">2008-0984</a></li>
</ul>
<p><strong>Debdiff Relatives:</strong></p>
<ul>
<li><a href="http://launchpadlibrarian.net/12245485/hardy_vlc_0.8.6.release.d-0ubuntu3.1.debdiff">hardy_vlc_0.8.6.release.d-0ubuntu3.1.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/12245849/gutsy_vlc_0.8.6.release.c-0ubuntu5.1.debdiff">gutsy_vlc_0.8.6.release.c-0ubuntu5.1.debdiff</a></li>
<li><a href="http://launchpadlibrarian.net/12246134/feisty_vlc_0.8.6.release-0ubuntu4.1.debdiff">feisty_vlc_0.8.6.release-0ubuntu4.1.debdiff</a></li>
<li>         <a href="http://launchpadlibrarian.net/12246315/dapper_vlc_0.8.4.debian-1ubuntu6.2.debdiff">dapper_vlc_0.8.4.debian-1ubuntu6.2.debdiff</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://en.emanuele-gentili.com/index.php/2008/03/11/vlc-security-patch-preview/feed/</wfw:commentRss>
		</item>
		<item>
		<title>hello world.</title>
		<link>http://en.emanuele-gentili.com/index.php/2008/02/28/hello-world/</link>
		<comments>http://en.emanuele-gentili.com/index.php/2008/02/28/hello-world/#comments</comments>
		<pubDate>Thu, 28 Feb 2008 03:15:42 +0000</pubDate>
		<dc:creator>emgent</dc:creator>
		
		<category><![CDATA[Life]]></category>

		<guid isPermaLink="false">http://en.emanuele-gentili.com/index.php/2008/02/28/hello-world/</guid>
		<description><![CDATA[This is the first post in my ENGRISH blog 
]]></description>
			<content:encoded><![CDATA[<p>This is the first post in my <strong>ENGRISH</strong> blog <img src='http://en.emanuele-gentili.com/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /></p>
]]></content:encoded>
			<wfw:commentRss>http://en.emanuele-gentili.com/index.php/2008/02/28/hello-world/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
