Submit a Story      Security   FAQ    Resources    Certification    Links    Calendar    Forum    Polls    Search      
User Functions
:

:

Don't have an account yet? Sign up as a New User
Lost your password?

What's New
STORIES
No new stories

COMMENTS last 2 days
No new comments

TRACKBACKS last 2 days
No new trackback comments

LINKS last 2 weeks
No recent new links


Who's Online
Guest Users: 6

Live Novell Chat
Live Novell Chat

Topics
Home
Contracting (2/0)
FAQ (1/0)
NetWare (44/0)
Certification (26/0)
NDS/eDir (17/0)
Administration (77/0)
GroupWise (62/0)
Linux/Open Source (277/0)
Resources (16/0)
General News (649/0)
Security (179/0)

Poll
Best Virtualization Platform?
XEN
VMWare
M$ Virtual Centre
Other (please comment to identify)
Results
67 votes | 0 comments

Poll
Now that OES2 is out, what is your deployment strategy?
ASAP, it is not downloading fast enough!
Wait a few months
Wait for SP1
There is still a killer feature we need (if so denote in the comments)
Not at all
OES2? Is that the next version of OS/2?
Results
111 votes | 0 comments

Poll
Is 2008 finally the year Linux sees a bigger gain of marketshare on the desktop?
Yes. OEMs like Dell, HP and Lenovo selling Linux PCs, and better ATI driver support were the last major barriers to widespread adoption
No. Issues such as a lack of a unified package manager, lack of ISV support and lack of third party apps still need to be overcome.
Results
83 votes | 2 comments

Microsoft Security
  • Microsoft Security Bulletin Revisions
  • Microsoft Security Bulletin Summary for April 2008


  •  [SA29663] Novell Kerberos KDC Multiple Vulnerabilities    
     Author:  kkbass
     Dated:  Friday, April 04 2008 @ 12:21 PM EDT
     Viewed:  77 times  
    SecuritySECUNIA ADVISORY ID:SA29663
    VERIFY ADVISORY:http://secunia.com/advisories/29663/
    CRITICAL:Highly critical
    IMPACT:Exposure of sensitive information, DoS, System access
    WHERE:From remote

    SOFTWARE:
    Novell Kerberos KDC 1.x
    http://secunia.com/product/13858/

    DESCRIPTION:
    Novell has acknowledged some vulnerabilities in Novell Kerberos KDC,
    which can be exploited by malicious people to disclose potentially
    sensitive information, cause a DoS (Denial of Service), or
    potentially compromise a vulnerable system.

    For more information:
    SA29428

    SOLUTION:
    Apply patches.

    x86 platform:
    http://download.novell.com/Download?buildid=yEhbIVtcB40~

    x86-64 platform:
    http://download.novell.com/Download?buildid=lEcyePhCocw~

    ORIGINAL ADVISORY:
    http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5022520.html
    http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5022542.html

    OTHER REFERENCES:
    SA29428:
    http://secunia.com/advisories/29428/

    ----------------------------------------------------------------------

    About:
    This Advisory was delivered by Secunia as a free service to help
    everybody keeping their systems up to date against the latest
    vulnerabilities.

    Subscribe:
    http://secunia.com/secunia_security_advisories/

    Definitions: (Criticality, Where etc.)
    http://secunia.com/about_secunia_advisories/


    Please Note:
    Secunia recommends that you verify all advisories you receive by
    clicking the link.
    Secunia NEVER sends attached files with advisories.
    Secunia does not advise people to install third party patches, only
    use those supplied by the vendor.

    ----------------------------------------------------------------------



    What's Related

    Story Options
  • Mail Story to a Friend
  • Printable Story Format

  • Trackback

    Trackback URL for this entry: http://www.abend.org/trackback.php/20080404122126213

    No trackback comments for this entry.
    [SA29663] Novell Kerberos KDC Multiple Vulnerabilities | 1 comments | Create New Account
    The following comments are owned by whomever posted them. This site is not responsible for what they say.
    [SA29663] Novell Kerberos KDC Multiple Vulnerabilities
    Authored by: kkbass on Friday, April 04 2008 @ 12:22 PM EDT
    Is it just me, or has anyone noticed a large upswing of security issues with Novell products as of late?