<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.2.2" -->
<rss version="0.92">
<channel>
	<title>Emanuele Gentili &#124; emgent blog</title>
	<link>http://en.emanuele-gentili.com</link>
	<description></description>
	<lastBuildDate>Thu, 10 Apr 2008 23:35:23 +0000</lastBuildDate>
	<docs>http://backend.userland.com/rss092</docs>
	<language>en</language>
	
	<item>
		<title>Shell history</title>
		<description>emgent@emanuele-gentili:~$ history&#124;awk '{a[$2]++ } END{for(i in a){print a[i] " " i}}' &#124;sort -rn&#124;head
108 ls
97 vim
97 cd
27 sudo
20 bzr
18 rm
16 git
11 python
10 quilt
9 wget </description>
		<link>http://en.emanuele-gentili.com/index.php/2008/04/11/shell-history/</link>
			</item>
	<item>
		<title>Security Corner 0.3: lighttpd Denial of Service</title>
		<description>Affected by security bug quite significant, lighttpd is still be vulnerable to Ubuntu repositories.

Lighttpd 1.4.19 and earlier allows remote attackers to cause a denial of service (active SSL connection loss) by triggering an SSL error, such as disconnecting before a download has finished, which causes all active SSL connections to ...</description>
		<link>http://en.emanuele-gentili.com/index.php/2008/04/07/security-corner-03-lighttpd-denial-of-service/</link>
			</item>
	<item>
		<title>Horde3 security patch preview</title>
		<description>Affected by security bug quite significant, horde3 is still be vulnerable to Ubuntu repositories.

Directory traversal vulnerability in Horde 3.1.6, Groupware before 1.0.5, and Groupware Webmail Edition before 1.0.6, when running with certain
configurations, allows remote authenticated users to read and execute arbitrary files via ".." sequences and a null byte in ...</description>
		<link>http://en.emanuele-gentili.com/index.php/2008/03/27/horde3-security-patch-preview/</link>
			</item>
	<item>
		<title>lighttpd security patch preview</title>
		<description>Affected by security bug quite significant, lighttpd is still be vulnerable to Ubuntu repositories.

mod_userdir in lighttpd 1.4.18 and earlier, when userdir.path is not set, uses a default of $HOME, which might allow remote attackers to read arbitrary files, as demonstrated by accessing the ~nobody directory.
 Hence a preview of the ...</description>
		<link>http://en.emanuele-gentili.com/index.php/2008/03/11/lighttpd-security-patch-preview/</link>
			</item>
	<item>
		<title>VLC security patch preview</title>
		<description>Affected by security bug quite significant, VLC is still be vulnerable to Ubuntu repositories.
 Hence a preview of the bug and my relative debdiff that will be placed in a circle in the mirror:

VLC
Vulnerable Version:

	Hardy
	Gutsy
	 Feisty
	Edgy
	Dapper

CVE


           2008-0984

Debdiff Relatives:

	hardy_vlc_0.8.6.release.d-0ubuntu3.1.debdiff
	gutsy_vlc_0.8.6.release.c-0ubuntu5.1.debdiff
	feisty_vlc_0.8.6.release-0ubuntu4.1.debdiff
	   ...</description>
		<link>http://en.emanuele-gentili.com/index.php/2008/03/11/vlc-security-patch-preview/</link>
			</item>
	<item>
		<title>hello world.</title>
		<description>This is the first post in my ENGRISH blog :P </description>
		<link>http://en.emanuele-gentili.com/index.php/2008/02/28/hello-world/</link>
			</item>
</channel>
</rss>
