From 2aa73ff15bfc4eb2afd85ca6d3ba081babf22432 Mon Sep 17 00:00:00 2001 From: Thomas Lange Date: Tue, 9 Jan 2024 20:01:07 +0100 Subject: remove unused security files This is what I did: git rm -rf */security/199* git rm -rf */security/20* git rm -rf */security/key-rollover git rm -rf */security/undated git rm -rf */lts/security/20* It removes 54335 files, including around 9650 DSA/DLA data files, 44189 wml files, nearly 500 Makefiles --- croatian/security/1997/19970127.wml | 16 ------------- croatian/security/1997/19970206a.wml | 10 -------- croatian/security/1997/19970206b.wml | 13 ----------- croatian/security/1997/19970210.wml | 28 ---------------------- croatian/security/1997/19970213.wml | 27 ---------------------- croatian/security/1997/19970220.wml | 41 --------------------------------- croatian/security/1997/19970302.wml | 15 ------------ croatian/security/1997/19970304.wml | 17 -------------- croatian/security/1997/19970323.wml | 9 -------- croatian/security/1997/19970325a.wml | 9 -------- croatian/security/1997/19970325b.wml | 9 -------- croatian/security/1997/19970407.wml | 9 -------- croatian/security/1997/19970409.wml | 38 ------------------------------ croatian/security/1997/19970416.wml | 12 ---------- croatian/security/1997/19970417.wml | 10 -------- croatian/security/1997/19970702a.wml | 9 -------- croatian/security/1997/19970702b.wml | 12 ---------- croatian/security/1997/Makefile | 1 - croatian/security/1997/index.wml | 6 ----- croatian/security/1998/19980110.wml | 10 -------- croatian/security/1998/19980112a.wml | 8 ------- croatian/security/1998/19980112b.wml | 8 ------- croatian/security/1998/19980211.wml | 8 ------- croatian/security/1998/19980217.wml | 8 ------- croatian/security/1998/19980317a.wml | 8 ------- croatian/security/1998/19980317b.wml | 8 ------- croatian/security/1998/19980317c.wml | 8 ------- croatian/security/1998/19980317d.wml | 8 ------- croatian/security/1998/19980317e.wml | 9 -------- croatian/security/1998/19980401.wml | 13 ----------- croatian/security/1998/19980508a.wml | 11 --------- croatian/security/1998/19980508b.wml | 14 ----------- croatian/security/1998/19980509.wml | 11 --------- croatian/security/1998/19980513.wml | 13 ----------- croatian/security/1998/19980514.wml | 11 --------- croatian/security/1998/19980520.wml | 13 ----------- croatian/security/1998/19980530b.wml | 13 ----------- croatian/security/1998/19980531.wml | 11 --------- croatian/security/1998/19980613.wml | 14 ----------- croatian/security/1998/19980708.wml | 13 ----------- croatian/security/1998/19980827a.wml | 13 ----------- croatian/security/1998/19980827b.wml | 14 ----------- croatian/security/1998/19980827c.wml | 13 ----------- croatian/security/1998/19980827d.wml | 12 ---------- croatian/security/1998/19980827e.wml | 13 ----------- croatian/security/1998/19980828a.wml | 13 ----------- croatian/security/1998/19980828b.wml | 19 --------------- croatian/security/1998/19980828c.wml | 13 ----------- croatian/security/1998/19980828d.wml | 9 -------- croatian/security/1998/19980829.wml | 25 -------------------- croatian/security/1998/19980901.wml | 16 ------------- croatian/security/1998/19980904.wml | 16 ------------- croatian/security/1998/19980905.wml | 12 ---------- croatian/security/1998/19980909.wml | 13 ----------- croatian/security/1998/19980922.wml | 13 ----------- croatian/security/1998/19981112.wml | 13 ----------- croatian/security/1998/19981118.wml | 19 --------------- croatian/security/1998/19981122.wml | 11 --------- croatian/security/1998/19981126.wml | 22 ------------------ croatian/security/1998/19981210.wml | 21 ----------------- croatian/security/1998/Makefile | 1 - croatian/security/1998/index.wml | 6 ----- croatian/security/1999/19990104.wml | 14 ----------- croatian/security/1999/19990117.wml | 31 ------------------------- croatian/security/1999/19990218.wml | 13 ----------- croatian/security/1999/19990220.wml | 15 ------------ croatian/security/1999/19990422.wml | 12 ---------- croatian/security/1999/19990607.wml | 15 ------------ croatian/security/1999/19990607a.wml | 11 --------- croatian/security/1999/19990612.wml | 11 --------- croatian/security/1999/19990823b.wml | 11 --------- croatian/security/1999/19990830.wml | 11 --------- croatian/security/1999/19990907.wml | 15 ------------ croatian/security/1999/19991018.wml | 13 ----------- croatian/security/1999/19991027.wml | 17 -------------- croatian/security/1999/19991111.wml | 15 ------------ croatian/security/1999/19991116.wml | 12 ---------- croatian/security/1999/19991202.wml | 17 -------------- croatian/security/1999/19991209.wml | 12 ---------- croatian/security/1999/Makefile | 1 - croatian/security/1999/index.wml | 6 ----- croatian/security/2000/Makefile | 1 - croatian/security/2000/index.wml | 12 ---------- croatian/security/2001/Makefile | 1 - croatian/security/2001/dsa-066.wml | 27 ---------------------- croatian/security/2001/index.wml | 12 ---------- croatian/security/undated/1land.wml | 10 -------- croatian/security/undated/1mc.wml | 8 ------- croatian/security/undated/1ssh.wml | 17 -------------- croatian/security/undated/1teardrop.wml | 9 -------- croatian/security/undated/1xfree.wml | 9 -------- croatian/security/undated/1xfree2.wml | 13 ----------- croatian/security/undated/1xfree3.wml | 10 -------- croatian/security/undated/Makefile | 1 - croatian/security/undated/index.wml | 5 ---- 95 files changed, 1205 deletions(-) delete mode 100644 croatian/security/1997/19970127.wml delete mode 100644 croatian/security/1997/19970206a.wml delete mode 100644 croatian/security/1997/19970206b.wml delete mode 100644 croatian/security/1997/19970210.wml delete mode 100644 croatian/security/1997/19970213.wml delete mode 100644 croatian/security/1997/19970220.wml delete mode 100644 croatian/security/1997/19970302.wml delete mode 100644 croatian/security/1997/19970304.wml delete mode 100644 croatian/security/1997/19970323.wml delete mode 100644 croatian/security/1997/19970325a.wml delete mode 100644 croatian/security/1997/19970325b.wml delete mode 100644 croatian/security/1997/19970407.wml delete mode 100644 croatian/security/1997/19970409.wml delete mode 100644 croatian/security/1997/19970416.wml delete mode 100644 croatian/security/1997/19970417.wml delete mode 100644 croatian/security/1997/19970702a.wml delete mode 100644 croatian/security/1997/19970702b.wml delete mode 100644 croatian/security/1997/Makefile delete mode 100644 croatian/security/1997/index.wml delete mode 100644 croatian/security/1998/19980110.wml delete mode 100644 croatian/security/1998/19980112a.wml delete mode 100644 croatian/security/1998/19980112b.wml delete mode 100644 croatian/security/1998/19980211.wml delete mode 100644 croatian/security/1998/19980217.wml delete mode 100644 croatian/security/1998/19980317a.wml delete mode 100644 croatian/security/1998/19980317b.wml delete mode 100644 croatian/security/1998/19980317c.wml delete mode 100644 croatian/security/1998/19980317d.wml delete mode 100644 croatian/security/1998/19980317e.wml delete mode 100644 croatian/security/1998/19980401.wml delete mode 100644 croatian/security/1998/19980508a.wml delete mode 100644 croatian/security/1998/19980508b.wml delete mode 100644 croatian/security/1998/19980509.wml delete mode 100644 croatian/security/1998/19980513.wml delete mode 100644 croatian/security/1998/19980514.wml delete mode 100644 croatian/security/1998/19980520.wml delete mode 100644 croatian/security/1998/19980530b.wml delete mode 100644 croatian/security/1998/19980531.wml delete mode 100644 croatian/security/1998/19980613.wml delete mode 100644 croatian/security/1998/19980708.wml delete mode 100644 croatian/security/1998/19980827a.wml delete mode 100644 croatian/security/1998/19980827b.wml delete mode 100644 croatian/security/1998/19980827c.wml delete mode 100644 croatian/security/1998/19980827d.wml delete mode 100644 croatian/security/1998/19980827e.wml delete mode 100644 croatian/security/1998/19980828a.wml delete mode 100644 croatian/security/1998/19980828b.wml delete mode 100644 croatian/security/1998/19980828c.wml delete mode 100644 croatian/security/1998/19980828d.wml delete mode 100644 croatian/security/1998/19980829.wml delete mode 100644 croatian/security/1998/19980901.wml delete mode 100644 croatian/security/1998/19980904.wml delete mode 100644 croatian/security/1998/19980905.wml delete mode 100644 croatian/security/1998/19980909.wml delete mode 100644 croatian/security/1998/19980922.wml delete mode 100644 croatian/security/1998/19981112.wml delete mode 100644 croatian/security/1998/19981118.wml delete mode 100644 croatian/security/1998/19981122.wml delete mode 100644 croatian/security/1998/19981126.wml delete mode 100644 croatian/security/1998/19981210.wml delete mode 100644 croatian/security/1998/Makefile delete mode 100644 croatian/security/1998/index.wml delete mode 100644 croatian/security/1999/19990104.wml delete mode 100644 croatian/security/1999/19990117.wml delete mode 100644 croatian/security/1999/19990218.wml delete mode 100644 croatian/security/1999/19990220.wml delete mode 100644 croatian/security/1999/19990422.wml delete mode 100644 croatian/security/1999/19990607.wml delete mode 100644 croatian/security/1999/19990607a.wml delete mode 100644 croatian/security/1999/19990612.wml delete mode 100644 croatian/security/1999/19990823b.wml delete mode 100644 croatian/security/1999/19990830.wml delete mode 100644 croatian/security/1999/19990907.wml delete mode 100644 croatian/security/1999/19991018.wml delete mode 100644 croatian/security/1999/19991027.wml delete mode 100644 croatian/security/1999/19991111.wml delete mode 100644 croatian/security/1999/19991116.wml delete mode 100644 croatian/security/1999/19991202.wml delete mode 100644 croatian/security/1999/19991209.wml delete mode 100644 croatian/security/1999/Makefile delete mode 100644 croatian/security/1999/index.wml delete mode 100644 croatian/security/2000/Makefile delete mode 100644 croatian/security/2000/index.wml delete mode 100644 croatian/security/2001/Makefile delete mode 100644 croatian/security/2001/dsa-066.wml delete mode 100644 croatian/security/2001/index.wml delete mode 100644 croatian/security/undated/1land.wml delete mode 100644 croatian/security/undated/1mc.wml delete mode 100644 croatian/security/undated/1ssh.wml delete mode 100644 croatian/security/undated/1teardrop.wml delete mode 100644 croatian/security/undated/1xfree.wml delete mode 100644 croatian/security/undated/1xfree2.wml delete mode 100644 croatian/security/undated/1xfree3.wml delete mode 100644 croatian/security/undated/Makefile delete mode 100644 croatian/security/undated/index.wml (limited to 'croatian') diff --git a/croatian/security/1997/19970127.wml b/croatian/security/1997/19970127.wml deleted file mode 100644 index 9e68813973a..00000000000 --- a/croatian/security/1997/19970127.wml +++ /dev/null @@ -1,16 +0,0 @@ -talkd ne provjerava duljinu imena računala - -

Izvadak iz -CERT Advisory CA-97.04.talkd: - -

Ovaj bug je ispravljen u Linux NetKit 0.08 koji dolazi sa svim razumno -svježim distribucijama Linuxa. - -

Linux zajednica se zahvaljuje Davidu A. Hollandu za njegov neprekidni rad -na sigurnosti mreže u Linuxu. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970127.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970206a.wml b/croatian/security/1997/19970206a.wml deleted file mode 100644 index 98dc1927d61..00000000000 --- a/croatian/security/1997/19970206a.wml +++ /dev/null @@ -1,10 +0,0 @@ -GNU tar ponekad nehotice stvori setuid-root izvršne datoteke. - -Normalno ne postoji opasnost. Ali ako "nobody" korisnik ima UID 65535, ovaj -sigurnosni problem se može iskoristiti. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970206a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970206b.wml b/croatian/security/1997/19970206b.wml deleted file mode 100644 index f30f6fb8003..00000000000 --- a/croatian/security/1997/19970206b.wml +++ /dev/null @@ -1,13 +0,0 @@ -rlogin ne provjerava duljinu $TERM. - -Izvadak iz CERT -Advisory CA-97.06.rlogin-term: - -

Samo jako zastarjeli Linux sustavi su ranjivi. Linux NetKit 0.08 ima -popravljen rlogin. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970206b.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970210.wml b/croatian/security/1997/19970210.wml deleted file mode 100644 index 4ed0defd31f..00000000000 --- a/croatian/security/1997/19970210.wml +++ /dev/null @@ -1,28 +0,0 @@ -standardna prekoračenja buffera u minicomu - -

Originalni pošiljatelj ovog izvješća: Dmitry E. Kim <jason@redline.ru>. - -

Ranjivost u minicomu dozvoljava (stanovitim) lokalnim korisnicima da -dobiju privilegije grupe "uucp" i, u određenim slučajevima, privilegije -root korisnika. - -

Minicom binarna datoteka je obično u vlasništvu korisnika "root" i grupe -"uucp", i ona je "-rwxr-sr-x" ili u nekim starijim distribucijama -"-rwsr-sr-x". Zapravo, minicom ima puno buffera neograničene -veličine i neke od njih je vrlo je lagano prekoračiti. Makar jedan od ovih -prekoračivih buffera je automatski — argument "-d" opciji minicoma se -kopira u 128 bajta dug automatski niz. Zato je moguće prebrisati adresu koju -funkcija vraća i izvršiti svoj kod (kao i obično). - -

Ako je minicom instaliran setuid root, bilo koji korisnik kojem je -dopušteno korištenje minicoma može dobiti root shell pristup. Ako je minicom -instaliran setgid uucp, svaki korisnik minicoma može dobiti privilegije -grupe uucp (molim vas, nemojte misliti da ovo nije ništa — makar na -Slackware strojevima /usr/lib/uucp se može pisati s privilegijama grupe. -Ovo znači da možete lagano zamijeniti uucico/uuxqt/itd svojim skriptama). - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970210.data' - -#use wml::debian::translation-check translation="f4424b27037553814e1f2ec9d3c8ac15d2eaef6c" diff --git a/croatian/security/1997/19970213.wml b/croatian/security/1997/19970213.wml deleted file mode 100644 index 82e5e0925b9..00000000000 --- a/croatian/security/1997/19970213.wml +++ /dev/null @@ -1,27 +0,0 @@ -prekoračenje buffera za libc NLSPATH - -

Originalni pošiljatelj ovog izvješća: <solar@ideal.ru> - -

"[Exploit] shellcode" je nešto drugačiji od uobičajenog: - -

- -

Možda je moguće iskoristiti ovu rupu izvana, ako bi se koristio -promijenjen telnet klijent koji bi dozvoljavao `exporting' velikih -vrijednosti u varijablama okoline. Prekoračenje bi se dogodilo u startanju -/bin/login programa (ponešto kao poznati LD_PRELOAD exploit, samo -prekoračenje buffera). Nisam u to siguran, ipak, moglo bi biti nekih -ograničenja na varijable okoline u telnetdu. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970213.data' - -#use wml::debian::translation-check translation="463077fd27ece5cc31348879643324e68a3c8e73" diff --git a/croatian/security/1997/19970220.wml b/croatian/security/1997/19970220.wml deleted file mode 100644 index cdad1445921..00000000000 --- a/croatian/security/1997/19970220.wml +++ /dev/null @@ -1,41 +0,0 @@ -Program "screen" prelazi granicu pri kopiranju gecos polja. - -

Prekoračenje postoji, ali screen predaje root privilegije prije nego što -se kod izvrši. - -

Originalni pošiljatelj ovog izvješća: Khelbin <khelbin@connix.com> - -

Screen 3.07.02, kada je setuid root (a obično jest), je osjetljiv na -prekoračenje buffera, makar na nekim platformama. Nisam pročitao cijeli -izvorni kod, ali nakon kratkog pregleda sam primijetio da attacher.c radi -sljedeće: - -

-      struct passwd ppp;
-      char fullname[100];
-
-      strcpy(fullname, ppp->pw_gecos);
-
- -

Mogao sam nabrzinu napisati exploit, ali nije radio ovdje na BSDI 1.1 -zato što chpass/chfn ne prihvaća neke znakove. Zbog toga je učitavanje -koda za dobivanje ljuske u "Full Name" polje uzrokovalo poruku o grešci -"Illegal Character found in the Full Name field, re-edit [y]?" ili nešto -slično. - -

Svaki OS ili verzija chfna/chpassa koja ne provjerava 'ilegalne znakove' -ili dužinu informacija koje se stavljaju u polje (BSDI 1.1 nije provjeravao -dužinu, samo ilegalne znakove) bi mogao biti ranjiv (nisam provjerio je li -već odustao od suid root privilegija, to sam mislio učiniti prekoračujući -buffer mojim shellcode stringom). - -

Ono što jesam radio je puko stavljanje mog shellcode stringa u ENV -varijablu (s NOPovima i povratnom adresom natrag na NOPove) i echoanje ENV -varijable u datoteku. Tada samo učitavate tu datoteku kada ste u -chpass/chfn kao nove gecos informacije. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970220.data' - -#use wml::debian::translation-check translation="ae4a72744f84be54cae3e4ec65a8488af3af84d1" diff --git a/croatian/security/1997/19970302.wml b/croatian/security/1997/19970302.wml deleted file mode 100644 index 62e3ebd6783..00000000000 --- a/croatian/security/1997/19970302.wml +++ /dev/null @@ -1,15 +0,0 @@ -Poslužitelji imapd, pop2d i pop3d dopuštaju udaljen, neautoriziran root pristup. - -Izvadak iz -Secure -Networks Inc. Security Advisory SNI-08: - -

U osnovi, ovo će dozvoliti svakom klijentu sa sposobnošću da pokuša -logiranje da upiše predugo korisničko ime kako bi uzrokovao izvršavanje svog -strojnog koda. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970302.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970304.wml b/croatian/security/1997/19970304.wml deleted file mode 100644 index 4054d714618..00000000000 --- a/croatian/security/1997/19970304.wml +++ /dev/null @@ -1,17 +0,0 @@ -SuperProbe (iz XFree86) sadrži više prekoračenja buffera - -

SuperProbe nije instaliran setuid root na Debianu. - -

Originalni pošiljatelj ovog izvješća: <solar@ideal.ru> - -

SuperProbe je program koji se isporučuje s XFree86 (kako bi odredili tip -video hardvera instaliranog na računalu), i instaliran je setuid root u -puno Linux distribucija. - -

Prekoračenje koje iskorištavam je u TestChip funkciji [...] - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970304.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970323.wml b/croatian/security/1997/19970323.wml deleted file mode 100644 index cb483737e46..00000000000 --- a/croatian/security/1997/19970323.wml +++ /dev/null @@ -1,9 +0,0 @@ -tftpd omogućava dohvaćanje datoteka s ".." u stazi - -detalji - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970323.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970325a.wml b/croatian/security/1997/19970325a.wml deleted file mode 100644 index 1b7b537ab22..00000000000 --- a/croatian/security/1997/19970325a.wml +++ /dev/null @@ -1,9 +0,0 @@ -sendmail 8.8.5 slijedi tvrde veze pri pisanju /var/tmp/dead.letter - -detalji - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970325a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970325b.wml b/croatian/security/1997/19970325b.wml deleted file mode 100644 index 32f9652e87e..00000000000 --- a/croatian/security/1997/19970325b.wml +++ /dev/null @@ -1,9 +0,0 @@ -inetd podprocesima proslijeđuje povlaštene grupe - -detalji - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970325b.data' - -#use wml::debian::translation-check translation="55a70d0c0f3df8d4df237334ac6de72daaa99f73" diff --git a/croatian/security/1997/19970407.wml b/croatian/security/1997/19970407.wml deleted file mode 100644 index 19e512c9d74..00000000000 --- a/croatian/security/1997/19970407.wml +++ /dev/null @@ -1,9 +0,0 @@ -amd zanemaruje opciju nodev - -detalji - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970407.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970409.wml b/croatian/security/1997/19970409.wml deleted file mode 100644 index 598f3c06290..00000000000 --- a/croatian/security/1997/19970409.wml +++ /dev/null @@ -1,38 +0,0 @@ -Možda je moguće natjerati metamail na izvršavanje željenih naredbi - -

Originalni pošiljatelj ovog izvješća: Olaf Kirch <okir@lst.de> - -

Rupa bi se mogla iskoristiti ako dopustite metamailu da pokreće showext -za poruke tipa message/external-body. Makar tcsh, i moguće par drugih -cshova, izgleda rade čudne stvari pri proširivanju argumenata na naredbenom -retku. Ako date skripti argument "foo FTP=/tmp/zlanaredba", i ona učini - -

-        set var=$1
-
- -

to će dodijeliti foo u $var, i /tmp/zlanaredba u $FTP. Nažalost, metamail -pokreće showext s MIME atributima na naredbenom retku, tako da mu u osnovi -možete poslati zaglavlje kao ovo - -

-   Content-type:  message/external-body;
-           access-type="anon-ftp";
-           name="passwd";
-           site="monad.swb.de";
-           directory="/etc";
-           mode="image FTP=/tmp/zlanaredba"
-
- -

Dalje ispod, skripta će pokrenuti $FTP kako bi pokrenula FTP vezu. Dosad, -nisam uspijevao proslijediti argumente naredbi, ali to ne znači da ne možete -napraviti zanimljive stvari s ovim gore. - -

[Zakrpa je obrisana zbog starosti.] - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970409.data' - -#use wml::debian::translation-check translation="463077fd27ece5cc31348879643324e68a3c8e73" diff --git a/croatian/security/1997/19970416.wml b/croatian/security/1997/19970416.wml deleted file mode 100644 index c9146d755bf..00000000000 --- a/croatian/security/1997/19970416.wml +++ /dev/null @@ -1,12 +0,0 @@ -Postoji ranjivost u PHP/FI-u, CGI poboljšanju za NCSA httpd - - -[DiGiTAL iNFORMATiON SOCiETY] Advisory 97-347.1 -i Secure -Networks Inc. Security Advisory SNI-11 - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970416.data' - -#use wml::debian::translation-check translation="55a70d0c0f3df8d4df237334ac6de72daaa99f73" diff --git a/croatian/security/1997/19970417.wml b/croatian/security/1997/19970417.wml deleted file mode 100644 index 023f538c58e..00000000000 --- a/croatian/security/1997/19970417.wml +++ /dev/null @@ -1,10 +0,0 @@ -Prekoračenje buffera u sperlu 5.003 - -CERT Advisory -CA-97.17 - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970417.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970702a.wml b/croatian/security/1997/19970702a.wml deleted file mode 100644 index 32274a4f011..00000000000 --- a/croatian/security/1997/19970702a.wml +++ /dev/null @@ -1,9 +0,0 @@ -Ranjivost u XFree86 - -Ispravljeno u XFree86 3.3. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970702a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/19970702b.wml b/croatian/security/1997/19970702b.wml deleted file mode 100644 index 576ebd5168e..00000000000 --- a/croatian/security/1997/19970702b.wml +++ /dev/null @@ -1,12 +0,0 @@ -Ranjivost u elmu - - -Originalni izvještaj na BUGTRAQu, - -odgovor Debian održavatelja - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1997/19970702b.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1997/Makefile b/croatian/security/1997/Makefile deleted file mode 100644 index 818a792178e..00000000000 --- a/croatian/security/1997/Makefile +++ /dev/null @@ -1 +0,0 @@ -include $(subst webwml/croatian,webwml/english,$(CURDIR))/Makefile diff --git a/croatian/security/1997/index.wml b/croatian/security/1997/index.wml deleted file mode 100644 index dda74667ee6..00000000000 --- a/croatian/security/1997/index.wml +++ /dev/null @@ -1,6 +0,0 @@ -#use wml::debian::template title="Sigurnosni naputci iz 1997." GEN_TIME="yes" -#use wml::debian::recent_list -#use wml::debian::translation-check translation="118bbba7772258864cea0391dc2fcecd44b8f358" - -<:= get_recent_list('.', '0', '$(ENGLISHDIR)/security/1997', 'list', '\d+\w*' ) :> - diff --git a/croatian/security/1998/19980110.wml b/croatian/security/1998/19980110.wml deleted file mode 100644 index 2f3d3541bad..00000000000 --- a/croatian/security/1998/19980110.wml +++ /dev/null @@ -1,10 +0,0 @@ -prekoračenje buffera - -Prekoračenje buffera može omogućiti root pristup. deliver se predoređeno ne -koristi na Debianu pa većina korisnika nije zahvaćena. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980110.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980112a.wml b/croatian/security/1998/19980112a.wml deleted file mode 100644 index 050b05d2789..00000000000 --- a/croatian/security/1998/19980112a.wml +++ /dev/null @@ -1,8 +0,0 @@ -UUCP rupa u smailu - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980112a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980112b.wml b/croatian/security/1998/19980112b.wml deleted file mode 100644 index 49f2b6e6ced..00000000000 --- a/croatian/security/1998/19980112b.wml +++ /dev/null @@ -1,8 +0,0 @@ -sudo omogućava korisnicima pokretanje bilo koje root naredbe - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980112b.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980211.wml b/croatian/security/1998/19980211.wml deleted file mode 100644 index 334763d4032..00000000000 --- a/croatian/security/1998/19980211.wml +++ /dev/null @@ -1,8 +0,0 @@ -Dozvoljeni meta-znakovi ljuske. - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980211.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980217.wml b/croatian/security/1998/19980217.wml deleted file mode 100644 index ab73d015a8c..00000000000 --- a/croatian/security/1998/19980217.wml +++ /dev/null @@ -1,8 +0,0 @@ -sort i tac ranjivi na napad simboličkom vezom - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980217.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980317a.wml b/croatian/security/1998/19980317a.wml deleted file mode 100644 index 709fbd55332..00000000000 --- a/croatian/security/1998/19980317a.wml +++ /dev/null @@ -1,8 +0,0 @@ -Ranjiv na napad simboličkom vezom. - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980317a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980317b.wml b/croatian/security/1998/19980317b.wml deleted file mode 100644 index 758eaa8e24b..00000000000 --- a/croatian/security/1998/19980317b.wml +++ /dev/null @@ -1,8 +0,0 @@ -potencijalno prekoračenje buffera u izvršnoj datoteci - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980317b.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980317c.wml b/croatian/security/1998/19980317c.wml deleted file mode 100644 index 38cd969c756..00000000000 --- a/croatian/security/1998/19980317c.wml +++ /dev/null @@ -1,8 +0,0 @@ -potencijalna prekoračenja buffera - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980317c.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980317d.wml b/croatian/security/1998/19980317d.wml deleted file mode 100644 index d6e8e24d0a8..00000000000 --- a/croatian/security/1998/19980317d.wml +++ /dev/null @@ -1,8 +0,0 @@ -routed udaljenom korisniku dopušta prepisivanje datoteke - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980317d.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980317e.wml b/croatian/security/1998/19980317e.wml deleted file mode 100644 index 1b7d09b53f3..00000000000 --- a/croatian/security/1998/19980317e.wml +++ /dev/null @@ -1,9 +0,0 @@ -Ranjiv na napad simboličkom vezom. - -Verzije prije 5.004 su ranjive. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980317e.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980401.wml b/croatian/security/1998/19980401.wml deleted file mode 100644 index a420b774189..00000000000 --- a/croatian/security/1998/19980401.wml +++ /dev/null @@ -1,13 +0,0 @@ -prekoračenje buffer uzrokuje potencijalne root rupe, denial of service napade - -Starije verzije binda su ranjive na prekoračenje buffera tokom inverznog -upita, možda omogućavajući pristup sustavu kao root. Dodatne ranjivosti -dopuštaju denial of service napade na bind uslugu. - -

Vidi CERT advisory CA-98.05. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980401.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980508a.wml b/croatian/security/1998/19980508a.wml deleted file mode 100644 index 0172765b82e..00000000000 --- a/croatian/security/1998/19980508a.wml +++ /dev/null @@ -1,11 +0,0 @@ -dozvoljava udaljenom računalu da šalje razne znakove na lokalni terminal - -irc potencijalno dopušta udaljeno slanje znakova na lokalni terminal. -David Holland je izvijestio da udaljeni korisnik IRC-a II može slati željene -znakove — ANSI kodove — na korisnikov terminal. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980508a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980508b.wml b/croatian/security/1998/19980508b.wml deleted file mode 100644 index 15af2f3bd0a..00000000000 --- a/croatian/security/1998/19980508b.wml +++ /dev/null @@ -1,14 +0,0 @@ -pokazuje datoteke unatoč manjku ovlasti - -Primili smo izvještaj da je super prikazivao datoteke čak i ako ih dotični -korisnik ne bi smio čitati. To je proslijeđeno uzvodnom autoru, Williamu -Deichu, koji je objavio ispravljenu verziju. - -

Ako na svojim strojevima imate instaliran super, predlažemo vam hitno -nadograđivanje. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980508b.data' - -#use wml::debian::translation-check translation="99d9281ec114bc899622b2b4aa3ce542cab01e5b" diff --git a/croatian/security/1998/19980509.wml b/croatian/security/1998/19980509.wml deleted file mode 100644 index 872fb8a59ad..00000000000 --- a/croatian/security/1998/19980509.wml +++ /dev/null @@ -1,11 +0,0 @@ -bug pri stvaranju i kvarenje datoteka u XConsole - -Primili smo izvještaj da procps 1.2.6 sadrži bug kod stvaranja i kvarenja -datoteka u XConsole. Ako na svojim strojevima imate instaliran procps, -predlažemo vam hitno nadograđivanje. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980509.data' - -#use wml::debian::translation-check translation="99d9281ec114bc899622b2b4aa3ce542cab01e5b" diff --git a/croatian/security/1998/19980513.wml b/croatian/security/1998/19980513.wml deleted file mode 100644 index 615f11da77d..00000000000 --- a/croatian/security/1998/19980513.wml +++ /dev/null @@ -1,13 +0,0 @@ -problem sa suom - -Primili smo izvještaje o problemu s programom su iz paketa shadow. To je -ispravljeno u nedavnim verzijama. - -

Preporučamo vam hitnu nadogradnju secure-sua ako je instaliran na -vašem sustavu. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980513.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980514.wml b/croatian/security/1998/19980514.wml deleted file mode 100644 index cb3b987b318..00000000000 --- a/croatian/security/1998/19980514.wml +++ /dev/null @@ -1,11 +0,0 @@ -gzexe dozvoljava nedozvoljeno pokretanje programa - -Michal Zalewski nam je rekao kako gzexe isporučen s gzipom koristi nesiguran -način dekomprimiranja izvršnih datoteka u letu otvarajući mogućnost -pozivanja željenih programa. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980514.data' - -#use wml::debian::translation-check translation="a5d6af41558dd8bf8106ed8fd92339e78c089775" diff --git a/croatian/security/1998/19980520.wml b/croatian/security/1998/19980520.wml deleted file mode 100644 index 5b7d0db6d59..00000000000 --- a/croatian/security/1998/19980520.wml +++ /dev/null @@ -1,13 +0,0 @@ -prekoračenja buffera - -Primili smo izvještaje da je samba paket isporučen s Debianom ranjiv na više -problema prekoračenja buffera odn. exploita. Grupa za razvoj sambe je -objavila zakrpano izdanje 1.9.18p6 koje ih ispravlja. - -

Preporučamo da odmah nadogradite svoj samba paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980520.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980530b.wml b/croatian/security/1998/19980530b.wml deleted file mode 100644 index aa92ae293a4..00000000000 --- a/croatian/security/1998/19980530b.wml +++ /dev/null @@ -1,13 +0,0 @@ -koristi nesiguran način otvaranja datoteka u /tmp - -Primili smo izvještaj da premail koristi privremene datoteke u /tmp -direktoriju koristeći nesigurne metode otvaranja istih. Ovo je ispravljeno u -novom izdanju, 0.45-4. - -

Preporučamo da hitno nadogradite svoj premail paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980530b.data' - -#use wml::debian::translation-check translation="57522ed06a3de36e4fe5fc3386728a4813c077db" diff --git a/croatian/security/1998/19980531.wml b/croatian/security/1998/19980531.wml deleted file mode 100644 index b22a733259a..00000000000 --- a/croatian/security/1998/19980531.wml +++ /dev/null @@ -1,11 +0,0 @@ -nesigurno otvara datoteke u /tmp - -Starije verzije mailxa su koristile nesiguran način pisanja datoteka u /tmp. -Ovo se može iskoristiti za oštećivanje datoteka u korisnikovom direktoriju -ili čak širom sustava. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980531.data' - -#use wml::debian::translation-check translation="57522ed06a3de36e4fe5fc3386728a4813c077db" diff --git a/croatian/security/1998/19980613.wml b/croatian/security/1998/19980613.wml deleted file mode 100644 index c82bffe395b..00000000000 --- a/croatian/security/1998/19980613.wml +++ /dev/null @@ -1,14 +0,0 @@ -prekoračenje buffera, daje pristup grupi games - -Chris Evans je prijavio da su prethodne verzije cxhextrisa dozvoljavale -lokalnim korisnicima da provale u grupu "games", što bi im moglo poslužiti -za sakrivanje svojih aktivnosti (ili varanjem u tablici najboljih -rezultata!!). - -

Preporučamo da nadogradite svoj cxhextris paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980613.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980708.wml b/croatian/security/1998/19980708.wml deleted file mode 100644 index 17821d09f40..00000000000 --- a/croatian/security/1998/19980708.wml +++ /dev/null @@ -1,13 +0,0 @@ -otvara datoteke u /tmp na nesiguran način - -Primili smo izvještaj koji govori da file-runner program otvara datoteke u -/tmp direktoriju na nesiguran način. Ovo može uzrokovati oštećenje drugih -datoteka ako su povezane na njih. - -

Preporučamo da hitno nadogradite svoj file-runner paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980708.data' - -#use wml::debian::translation-check translation="a5d6af41558dd8bf8106ed8fd92339e78c089775" diff --git a/croatian/security/1998/19980827a.wml b/croatian/security/1998/19980827a.wml deleted file mode 100644 index 4a699b44832..00000000000 --- a/croatian/security/1998/19980827a.wml +++ /dev/null @@ -1,13 +0,0 @@ -skripta faxsurvey izvršava nedozvoljene naredbe - -Primili smo izvještaj da faxsurvey skripta koja je uključena u prošlim -izdanjima hylafaxa može izvršavati razne naredbe. Molimo pažnju, ovaj paket -ne sadrži ispravku, već je loša skripta jednostavno obrisana. - -

Preporučujemo da hitno nadogradite svoj hylafax-doc paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980827a.data' - -#use wml::debian::translation-check translation="eb22fddc523a7a9a4544a7c1ef144e415b8d2d73" diff --git a/croatian/security/1998/19980827b.wml b/croatian/security/1998/19980827b.wml deleted file mode 100644 index e815333c666..00000000000 --- a/croatian/security/1998/19980827b.wml +++ /dev/null @@ -1,14 +0,0 @@ -potencijalno dozvoljava lokalna iskorištavanja roota - -

Primili smo izvještaj koji govori da korisnik može izvršavati razne -naredbe iz .plan ili .project datoteke. Iako je opcija koja ovo dozvoljava -po pretpostavljenoj vrijednosti isključena, sustav je ranjiv ako je sistem -administrator omogućio ovu opciju. - -

Preporučamo da hitno nadogradite svoj cfingerd paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980827b.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980827c.wml b/croatian/security/1998/19980827c.wml deleted file mode 100644 index d3026fde739..00000000000 --- a/croatian/security/1998/19980827c.wml +++ /dev/null @@ -1,13 +0,0 @@ -zlonamjerne poruke mogu izvršiti nedozvoljen kod - -Primili smo izvještaj od Paula Boehma koji navodi da Mutt ima prekoračivi -buffer u parse.c. Pri slanju zlonamjernih poruka, možete izvršiti razne -stvari na sustavu korisnika koji pokreće mutt. - -

Preporučamo da hitno nadogradite svoj Mutt paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980827c.data' - -#use wml::debian::translation-check translation="a89bd261bce1ed1e89c6a779e28625bf4f26aa90" diff --git a/croatian/security/1998/19980827d.wml b/croatian/security/1998/19980827d.wml deleted file mode 100644 index 1b9ad217a94..00000000000 --- a/croatian/security/1998/19980827d.wml +++ /dev/null @@ -1,12 +0,0 @@ -setuid ncurses programi dozvoljavaju otvaranje raznih datoteka - -Primili smo izvještaj koji govori da će korištenje ncursesa u setuid -programima korisniku pružiti priliku za otvaranje raznih datoteka. - -

Preporučamo vam da hitno nadogradite svoj ncurses3.4-dev paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980827d.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980827e.wml b/croatian/security/1998/19980827e.wml deleted file mode 100644 index 47d0b73fbb6..00000000000 --- a/croatian/security/1998/19980827e.wml +++ /dev/null @@ -1,13 +0,0 @@ -krivo shvaća ISINDEX upite - -

Primili smo izvještaj od Tiaga Luz Pinta da eperl paket uključen u -izdanju 2.0 krivo shvaća ISINDEX upite. Ovo može voditi tome da se svakakav -Perl kod izvršava na poslužitelju. - -

Preporučamo vam da hitno nadogradite svoj eperl paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980827e.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980828a.wml b/croatian/security/1998/19980828a.wml deleted file mode 100644 index 3ea460b82e8..00000000000 --- a/croatian/security/1998/19980828a.wml +++ /dev/null @@ -1,13 +0,0 @@ -prekoračenja buffera omogućavaju dobivanje root pristupa - -Primili smo izvještaje da bi prekoračenja buffera u lprmu mogla dozvoliti -korisnicima da dobiju root pristup lokalnom sustavu. - -

Preporučamo vam da koristite binarne pakete iz hamma ili bilo kojeg -drugog novijeg izdanja. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980828a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980828b.wml b/croatian/security/1998/19980828b.wml deleted file mode 100644 index 27b40edf65b..00000000000 --- a/croatian/security/1998/19980828b.wml +++ /dev/null @@ -1,19 +0,0 @@ -udaljeni denial-of-service ako se koristi sendsys mehanizam izvještavanja - -Primili smo izvještaje o novoj vrsti "denial of service" napada koji su -onemogućavali INN news sustave. Netko je poslao tone sendsys poruka s -krivotvorenim "From" adresama. Ovo može uzrokovati veliko opterećenje na -news sustavu ako bi on procesuirao te zahtjeve. - -

Debian GNU/Linux nije ranjiv na ovo ako se sačuvaju -početne postavke jer se takvi zahtjevi samo logiraju. Ipak, oni će biti -procesuirani ako dođu s dvije dobro poznate adrese. - -

Ova vrsta kontrolnih poruka više nije potrebna jer je USENET jako -narastao i jako je pouzdan. Zbog toga ne šteti isključiti ovaj mehanizam. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980828b.data' - -#use wml::debian::translation-check translation="f0ec8942dbe43e07744303cf2c915c9eba3d548e" diff --git a/croatian/security/1998/19980828c.wml b/croatian/security/1998/19980828c.wml deleted file mode 100644 index e25546665ed..00000000000 --- a/croatian/security/1998/19980828c.wml +++ /dev/null @@ -1,13 +0,0 @@ -ranjiv na denial-of-service - -Primili smo izvještaj od Dag-Erling Coidan Smørgrava koji kaže da je apache -distribuiran s Debian GNU/Linuxom 2.0 ranjiv na denial-of-service rupu u -kojoj ponovljena identična zaglavlja mogu konzumirati O(n²) memorije. - -

Preporučamo vam da hitno nadogradite vaš apache paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980828c.data' - -#use wml::debian::translation-check translation="19967b4c9aa3da955f49ef99ac0a9d117606c8a4" diff --git a/croatian/security/1998/19980828d.wml b/croatian/security/1998/19980828d.wml deleted file mode 100644 index abde14f2178..00000000000 --- a/croatian/security/1998/19980828d.wml +++ /dev/null @@ -1,9 +0,0 @@ -/tmp race u sailu - -Igra sail iz paketa bsdgames je sadržavala /tmp race. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980828d.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980829.wml b/croatian/security/1998/19980829.wml deleted file mode 100644 index 3e0b1431c71..00000000000 --- a/croatian/security/1998/19980829.wml +++ /dev/null @@ -1,25 +0,0 @@ -ugrožavanje roota - -

Primili smo izvještaj od SGI-a da je pronađena ranjivost u programu -seyon. Ovo može voditi ugrožavanju roota. Svaki korisnik koji može pokrenuti -program seyon može iskoristiti ovu ranjivost. - -

Budući da SGI ne pruža informacije o exploitu, ne možemo ispraviti -problem. SGI je pružio takve informacije samo poznatim organizacijama za -sigurnosne odgovore/incidente/koordinaciju a bugtraq se ne prihvaća kao -takva. SGI ne razvija zakrpe za druge proizvode, tako da nema šanse za brzu -ispravku. - -

Budući da ugrožavanje roota zahtijeva izvršnu datoteku koja se pokreće -kao root, vjerujemo da ovo zahtijeva setuid seyon. Seyon paket koji se pruža -uz Debian GNU/Linux ne radi kao setuid root. - -

Zbog toga sumnjamo da se seyon paket koji se isporučuje s Debian -GNU/Linuxom može iskoristiti za dobivanje roota ako ne promijenite -pretpostavljeno ponašanje. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980829.data' - -#use wml::debian::translation-check translation="55a70d0c0f3df8d4df237334ac6de72daaa99f73" diff --git a/croatian/security/1998/19980901.wml b/croatian/security/1998/19980901.wml deleted file mode 100644 index 3c8ac566f65..00000000000 --- a/croatian/security/1998/19980901.wml +++ /dev/null @@ -1,16 +0,0 @@ -prekoračenja buffera u minicomu ako je suid - -Nedavne poruke na jednom forumu o računalnoj sigurnosti su ponovo upozorile -na prekoračenja buffera u minicomu. Oni mogu voditi iskorištavanju roota ako -je program instaliran setuid root. - -

Debian GNU/Linux 2.0 nije ranjiv na ovaj exploit. - -

Program minicom isporučen s distribucijom nije instaliran setuid root. -Ovo nije potrebno na Debian GNU/Linux sustavu. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980901.data' - -#use wml::debian::translation-check translation="2c7cedb8e0fb02b64c3c71add86fe5d90b281fe8" diff --git a/croatian/security/1998/19980904.wml b/croatian/security/1998/19980904.wml deleted file mode 100644 index bb404b85940..00000000000 --- a/croatian/security/1998/19980904.wml +++ /dev/null @@ -1,16 +0,0 @@ -prekoračenje buffera u mountdu - -Program rpc.mountd je daemon za montiranje koji radi s NFS montiranjem. -Verzija koja se isporučuje s trenutnim distribucijama Linuxa sadrži -prekoračenje buffera. - -

Ovo prekoračenje buffera se može koristiti kao dio napada koji dozvoljava -dobivanje root pristupa na stroju koji radi kao NFS poslužitelj. - -

Preporučamo vam da hitno nadogradite vaš netstd paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980904.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980905.wml b/croatian/security/1998/19980905.wml deleted file mode 100644 index 4cdab942da2..00000000000 --- a/croatian/security/1998/19980905.wml +++ /dev/null @@ -1,12 +0,0 @@ -moguća prekoračenja buffera u nslookupu i digu - -Primili smo izvještaje da nslookup i dig alati koji se isporučuju s -trenutnim distribucijama Linuxa sadrže moguća prekoračenja buffera. - -

Preporučamo vam hitno nadograđivanje vašeg bind paketa. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980905.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980909.wml b/croatian/security/1998/19980909.wml deleted file mode 100644 index 2f6699f9baf..00000000000 --- a/croatian/security/1998/19980909.wml +++ /dev/null @@ -1,13 +0,0 @@ -problem s vrlo dugim imenima staza - -

Primili smo izvještaje da je bash shell imao problem s vrlo dugim imenima -staza. Kada je radio s vrlo dugom stazom, nije provjeravao rezultat -getcwd()a na svim mjestima, što je moglo biti iskorišteno. - -

Preporučamo vam da hitno nadogradite svoj bash paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980909.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19980922.wml b/croatian/security/1998/19980922.wml deleted file mode 100644 index 5f75b85bf6f..00000000000 --- a/croatian/security/1998/19980922.wml +++ /dev/null @@ -1,13 +0,0 @@ -prekoračenje buffera s vrlo dugim stazama - -

Otkrili smo da je tcsh ljuska imala problem s vrlo dugim stazama. -Kada je radio s vrlo dugom stazom, tcsh nije provjeravao rezultat -getcwd()a na svim mjestima, što je moglo biti iskorišteno. - -

Preporučamo vam hitno nadograđivanje svog tcsh paketa. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19980922.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1998/19981112.wml b/croatian/security/1998/19981112.wml deleted file mode 100644 index e1f5ab81825..00000000000 --- a/croatian/security/1998/19981112.wml +++ /dev/null @@ -1,13 +0,0 @@ -prekoračenja buffera - -Dobili smo izvještaje da je junkbuster imao nekoliko ranjivosti u -prekoračenju buffera. Ispravili smo ih u inačici 2.0-3.2. Sve kasnije -verzije također nisu ranjive. Zakrpe su backportane iz verzije 2.0.2. - -

Preporučamo vam da hitno nadogradite svoj junkbuster paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19981112.data' - -#use wml::debian::translation-check translation="383616a4b93204bda26a195398334ebdb79aab8a" diff --git a/croatian/security/1998/19981118.wml b/croatian/security/1998/19981118.wml deleted file mode 100644 index 6600fa69365..00000000000 --- a/croatian/security/1998/19981118.wml +++ /dev/null @@ -1,19 +0,0 @@ -nesigurne privremene datoteke - -Javili su se izvještaji da su neke Linux distribucije zahvaćene ranjivošću u -sambi. Postoje dva problema: -

- -

Ne trebate nadograđivati svoj samba paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19981118.data' - -#use wml::debian::translation-check translation="a61693d1249291988800494434ea1cb39599df6f" diff --git a/croatian/security/1998/19981122.wml b/croatian/security/1998/19981122.wml deleted file mode 100644 index e8fc2743f55..00000000000 --- a/croatian/security/1998/19981122.wml +++ /dev/null @@ -1,11 +0,0 @@ -prekoračenja buffera - -Primili smo izvještaje da je zgv paket ranjiv na prekoračenje buffera. - -

Preporučamo vam hitno nadograđivanje zgv paketa. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19981122.data' - -#use wml::debian::translation-check translation="383616a4b93204bda26a195398334ebdb79aab8a" diff --git a/croatian/security/1998/19981126.wml b/croatian/security/1998/19981126.wml deleted file mode 100644 index 8ae3a2050d6..00000000000 --- a/croatian/security/1998/19981126.wml +++ /dev/null @@ -1,22 +0,0 @@ -neovlašteno stvara korisnika "ftp" - -Otkrili smo da ftp paket uvodi moguću sigurnosnu grešku. Kada se instalira -fsp paket, on dodaje korisnika "ftp" bez pitanja administratoru. Ovo može -omogućiti anonimni FTP ako koristite standardni FTP daemon ili wu-ftpd. - -

Ako ste instalirali ftp i FTP daemon a ne želite imati omogućen anonimni -FTP, trebate obrisati korisnički račun "ftp". To se može učiniti naredbom -"userdel ftp". - -

Molimo primijetite da ako koristite proftpd kao FTP daemon, ova greška -neće utjecati na vas, jer on zahtijeva da ručno omogućite anonimni FTP. - -

Ispravili smo ovo u fsp 2.71-10. Molimo primijetite da ako ste već -instalirali fsp, nadogradnja na ovu verziju neće ukloniti -korisnika "ftp", već ćete to morati učiniti ručno. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19981126.data' - -#use wml::debian::translation-check translation="1936841f002ca29a0bf824712cb9bb1072141914" diff --git a/croatian/security/1998/19981210.wml b/croatian/security/1998/19981210.wml deleted file mode 100644 index 554941b7a5e..00000000000 --- a/croatian/security/1998/19981210.wml +++ /dev/null @@ -1,21 +0,0 @@ -prekoračenje buffera pri logiranju - -Nedavno se pojavilo dosta zbunjenosti oko ssha: neki ljudi misle da je u -njihove sustave provaljeno kroz ssh, iako nitko nije mogao napraviti -exploit. Kako bi izbjegli sve moguće probleme, zakrpali smo ssh i popravili -sva moguća prekoračenja buffera. Mislimo da će ovo zaustaviti svaki napad -koji bi se mogao pojaviti. Ovo također uključuje ispravke za kerberos kod -koji su bili distribuirani. - -

Molimo primijetite da ova zakrpa ne pati od problema s licencom koje -imaju ostale zakrpe koje su kružile, jer on ne koristi vsnprintf -implementaciju iz ssh 2 već kod iz sendmaila (koji je baziran na kodu koji -je plutao na usenetu) za sustave koji nemaju vsnprintf u njihovom libcu. - -

Preporučamo vam da hitno nadogradite svoj ssh paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1998/19981210.data' - -#use wml::debian::translation-check translation="383616a4b93204bda26a195398334ebdb79aab8a" diff --git a/croatian/security/1998/Makefile b/croatian/security/1998/Makefile deleted file mode 100644 index 818a792178e..00000000000 --- a/croatian/security/1998/Makefile +++ /dev/null @@ -1 +0,0 @@ -include $(subst webwml/croatian,webwml/english,$(CURDIR))/Makefile diff --git a/croatian/security/1998/index.wml b/croatian/security/1998/index.wml deleted file mode 100644 index a12de62fca7..00000000000 --- a/croatian/security/1998/index.wml +++ /dev/null @@ -1,6 +0,0 @@ -Sigurnosni naputci iz 1998. -#use wml::debian::template title="Sigurnosni naputci iz 1998." GEN_TIME="yes" -#use wml::debian::recent_list -#use wml::debian::translation-check translation="118bbba7772258864cea0391dc2fcecd44b8f358" - -<:= get_recent_list ('.', '0', '$(ENGLISHDIR)/security/1998', 'list', '\d+\w*' ) :> diff --git a/croatian/security/1999/19990104.wml b/croatian/security/1999/19990104.wml deleted file mode 100644 index e5f0128ed1b..00000000000 --- a/croatian/security/1999/19990104.wml +++ /dev/null @@ -1,14 +0,0 @@ -Prekoračenja buffera u bootpdu i ftpu - -Dobili smo izvještaje da su postojala dva prekoračenja buffera u netstdu. -Prvi problem je iskoristivo prekoračenje buffera u bootp poslužitelju. -Drugi problem je prekoračenje u FTP klijentu. Oba problema su ispravljena u -novom netstd paketu, inačice 3.07-2hamm.4. - -

Preporučamo vam hitnu nadogradnju vašeg netstd paketa. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990104.data' - -#use wml::debian::translation-check translation="d623d1ffc2b1ff9c62f4e34d213291e515d408b0" diff --git a/croatian/security/1999/19990117.wml b/croatian/security/1999/19990117.wml deleted file mode 100644 index a89bfa42109..00000000000 --- a/croatian/security/1999/19990117.wml +++ /dev/null @@ -1,31 +0,0 @@ -izlaganje roota u ftpwatchu - -Otkrili smo da ftpwatch paket, distribuiran u Debian GNU/Linuxu 1.3 i -kasnijim distribucijama, ima sigurnosni problem koji korisnicima omogućuje -lagano (neovlašteno) dobivanje root pristupa. - -

Preporučamo vam da hitno uklonite vaš ftpwatch paket. - -

Mi ćemo raditi na novoj inačici ftpwatcha kako bi ispravili ove probleme -i to ćemo objaviti u novom upozorenju. - -

Novo upozorenje nikad nije objavljeno. Obnovljen paket je dostupan u -novijim distribucijama, i njegova Debian README datoteka sadrži sljedeće: - -

-Zbog sigurnosnih problema FTPWatch se više ne instalira u crontab datoteku
-roota. Ali ga svaki korisnik koji ga želi koristiti treba staviti u svoje
-crontab datoteke. Kako bi dobili tjedno osvježavanje kao i prije, možete
-koristiti sljedeći redak:
-
-  47 5    * * 7 /usr/sbin/ftpwatch
-
-Ovo također znači da se sve datoteke u ~/.ftpwatch/ trebaju `chown'ati kako
-bi bile vlasništvo tog korisnika, ne roota.
-
-
- -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990117.data' - -#use wml::debian::translation-check translation="73a28a0a52483b069940757e205e7fa820d9f1ca" diff --git a/croatian/security/1999/19990218.wml b/croatian/security/1999/19990218.wml deleted file mode 100644 index 3f500fb51cd..00000000000 --- a/croatian/security/1999/19990218.wml +++ /dev/null @@ -1,13 +0,0 @@ -Iskorištavanje roota u etermu. - -Bila je ranjiva samo verzija 0.8.8 u neobjavljenoj Debian "potato" -distribuciji. Ranije verzije 0.7 i 0.8.7 u hammu i slinku nisu -ranjive. -

Verzija eterma trenutno dostupna u potatou (eterm_0.8.8-5 i viša) su već -popravljene. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990218.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19990220.wml b/croatian/security/1999/19990220.wml deleted file mode 100644 index 56078147cac..00000000000 --- a/croatian/security/1999/19990220.wml +++ /dev/null @@ -1,15 +0,0 @@ -Neispravan rad sa dozvolama simboličkih veza - -Verzija wgeta u slinku (2.1) i potatou neispravno pokušava promijeniti -dozvole simboličkih veza kada je pokrenuta uz opciju -N. Verzija u hammu -(Debian 2.0) nije zahvaćena. - -

Samo wget paket u neobjavljenim Debian verzijama je zahvaćen. Možete -instalirati wget_1.4.5-0.1 iz Debian 2.0 izdanja, ili pričekati popravljeni -wget_1.5.3 koji će biti objavljen uskoro. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990220.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19990422.wml b/croatian/security/1999/19990422.wml deleted file mode 100644 index 79da5fb9c89..00000000000 --- a/croatian/security/1999/19990422.wml +++ /dev/null @@ -1,12 +0,0 @@ -Prekoračenja buffera, sporedna sigurnosna rješenja u procmailu. - -

Nova verzija procmaila je objavljena a koja popravlja neka nova -prekoračenja buffera koja su propuštena u verziji 3.13. - -

Preporučamo da hitno nadogradite svoj procmail paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990422.data' - -#use wml::debian::translation-check translation="d623d1ffc2b1ff9c62f4e34d213291e515d408b0" diff --git a/croatian/security/1999/19990607.wml b/croatian/security/1999/19990607.wml deleted file mode 100644 index c91b6c42833..00000000000 --- a/croatian/security/1999/19990607.wml +++ /dev/null @@ -1,15 +0,0 @@ -Denial of service u kernelima 2.2 serije - -Linux 2.2.x kerneli su imali problem s obrađivanjem IP opcija, koji ih je -činio osjetljivim na DoS napad. Debian GNU/Linux 2.1 (slink) za Sun sparc -arhitekturu koristi takav kernel. Ako koristite takav sustav i niste -nadogradili svoj kernel, preporučamo vam da odmah nadogradite svoj -kernel-image paket. Ako imate sun4u sustav, uzmite kernel-image-2.2.9-sun4u, -a inače koristite obični kernel-image-2.2.9 paket. U slinku samo sparc -arhitektura po instalaciji koristi 2.2 kernel. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990607.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19990607a.wml b/croatian/security/1999/19990607a.wml deleted file mode 100644 index d764e5df109..00000000000 --- a/croatian/security/1999/19990607a.wml +++ /dev/null @@ -1,11 +0,0 @@ -Ranjivost u POP-2 demonu - -Verzija imap paketa iz Debian GNU/Linuxa 2.1 ima ranjivost u svojem POP-2 -demonu, koji se nalazi u paketu ipopd. Ta ranjivost omogućava udaljenim -korisnicima dobivanje ljuske na poslužitelju kao korisnik `nobody'. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990607a.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19990612.wml b/croatian/security/1999/19990612.wml deleted file mode 100644 index 4517ab94ae3..00000000000 --- a/croatian/security/1999/19990612.wml +++ /dev/null @@ -1,11 +0,0 @@ -Napad simboličkom vezom - -Primili smo izvještaje da paket man-db koji dolazi uz Debian GNU/Linux 2.1 -ima ranjivost u programu zsoelim: bio je ranjiv na napad simboličkom vezom. -To je ispravljeno u verziji 2.3.10-69FIX.1. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990612.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19990823b.wml b/croatian/security/1999/19990823b.wml deleted file mode 100644 index 5f5ce475446..00000000000 --- a/croatian/security/1999/19990823b.wml +++ /dev/null @@ -1,11 +0,0 @@ -Problem u stvaranju /tmp datoteke. - -Prethodne verzije paketa smtp-refuser su logirale naredbe u /tmp/log. To je -omogućavalo brisanje željenih datoteka čiji je vlasnik root od strane bilo -kojeg korisnika koji smije pisati u /tmp. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990823b.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19990830.wml b/croatian/security/1999/19990830.wml deleted file mode 100644 index 6042effca3d..00000000000 --- a/croatian/security/1999/19990830.wml +++ /dev/null @@ -1,11 +0,0 @@ -Prisvajanje roota preko crona. - -cron šalje poštu kao root bez provjeravanja parametara danih sendmailu. To -može voditi kompromitiranju roota. Preporučamo hitno nadograđivanje paketa -cron. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990830.data' - -#use wml::debian::translation-check translation="55a70d0c0f3df8d4df237334ac6de72daaa99f73" diff --git a/croatian/security/1999/19990907.wml b/croatian/security/1999/19990907.wml deleted file mode 100644 index d4db5cdbb35..00000000000 --- a/croatian/security/1999/19990907.wml +++ /dev/null @@ -1,15 +0,0 @@ -Prekoračenje buffera u programu INN inews. - -Dobili smo izvještaj o prekoračenju buffera u programu inews koji dolazi uz -INN news poslužitelj. Taj program koriste lokalni klijenti za slanje članaka -na poslužitelj. Kako bi se mogao spojiti na news poslužitelj preko Unix -domain socketa, on mora biti setgid "news". Iskorištavajući ovaj bug lokalni -korisnici mogu dobiti "news" privilegije. Nakon toga smiju mijenjati -konfiguraciju INN poslužitelja, te uništavati njegove baze podataka i -datoteke. Preporučamo hitno nadograđivanje paketa inews-inn. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19990907.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19991018.wml b/croatian/security/1999/19991018.wml deleted file mode 100644 index cefbd39afaf..00000000000 --- a/croatian/security/1999/19991018.wml +++ /dev/null @@ -1,13 +0,0 @@ -Neispravno rukovanje imenima direktorija u mirroru - -Primili smo izvještaje da je verzija mirrora distribuirana s Debian -GNU/Linuxom 2.1 ranjiva na izvanjske zloupotrebe. Kada bi se mirrorao -vanjski poslužitelj, njegov zlonamjerni vlasnik bi mogao koristiti -konstrukcije imena datoteka kao ".." koje bi uzrokovale to da -mirror radi jedan nivo više od ciljnog direktorija za mirrorane datoteke -i tako ne znajući prebriše lokalne podatke. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19991018.data' -#use wml::debian::translation-check translation="14ab6ac0d7b707530cf1dd241af96e704c2a2f19" diff --git a/croatian/security/1999/19991027.wml b/croatian/security/1999/19991027.wml deleted file mode 100644 index f5e83cd18c2..00000000000 --- a/croatian/security/1999/19991027.wml +++ /dev/null @@ -1,17 +0,0 @@ -razni sigurnosni problemi u nisu - -Paket nis koji je distribuiran s Debian GNU/Linuxom 2.1 ima nekoliko -problema: -

-Ovo je ispravljeno u verziji 3.5-2. Preporučamo vam da hitno nadogradite -svoj nis paket. -
- -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19991027.data' -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19991111.wml b/croatian/security/1999/19991111.wml deleted file mode 100644 index bcec1ee634d..00000000000 --- a/croatian/security/1999/19991111.wml +++ /dev/null @@ -1,15 +0,0 @@ -prekoračenje buffera u NFS poslužitelju - -Verzija nfs-servera koja je distribuirana s Debian GNU/Linuxom 2.1 je imala -prekoračenje buffera u fh_buildpath(). Ona je podrazumijevala da ukupna -dužina staze nikad neće prijeći (PATH_MAX_NAME_MAX). S direktorijem koji je -exportiran za pisanje i čitanje korisnici bi mogli napraviti duže staze i -napraviti prekoračenje buffera. - -

Ovo je ispravljeno u verziji 2.2beta37-1slink.1, i preporučamo vam da -hitno nadogradite svoj nfs-server paket. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19991111.data' -#use wml::debian::translation-check translation="ccfac441ce2e390723f47b0effba9aecbafef9c0" diff --git a/croatian/security/1999/19991116.wml b/croatian/security/1999/19991116.wml deleted file mode 100644 index 0c5596cf4eb..00000000000 --- a/croatian/security/1999/19991116.wml +++ /dev/null @@ -1,12 +0,0 @@ -Denial of service ranjivosti u bindu - -Verzija binda u Debian GNU/Linuxu 2.1 je ranjiva na nekoliko -denial-of-service napada, kao što je opisano u CERT izvješću CA-99.14. -Primijetite kako bind u Debian GNU/Linuxu 2.1 (bind 8.2.1) nije -ranjiv na root exploit NXT polja, koji iskorištava mogućnost dodanu u -bind 8.2. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19991116.data' -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19991202.wml b/croatian/security/1999/19991202.wml deleted file mode 100644 index f23d6d75fed..00000000000 --- a/croatian/security/1999/19991202.wml +++ /dev/null @@ -1,17 +0,0 @@ -problem pri vraćanju simboličkih veza - -Verzija dumpa koja je distribuirana s Debian GNU/Linuxom 2.1 pati od -problema pri vraćanju simboličkih veza. - -

Ovo je ispravljeno u verziji 0.4b9-0slink1. Preporučamo vam hitnu -nadogradnju vašeg dump paketa. - -

Ova inačica "koristi lchown umjesto chowna, što ispravlja mogući -sigurnosni problem pri vraćanju simboličkih veza (zlonamjeran korisnik bi -ovo mogao iskoristiti da namjerno pokvari vlasništvo datoteka važnih za -sustav)". - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19991202.data' -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/1999/19991209.wml b/croatian/security/1999/19991209.wml deleted file mode 100644 index 7d49960b6fe..00000000000 --- a/croatian/security/1999/19991209.wml +++ /dev/null @@ -1,12 +0,0 @@ -izvanjski exploit u htdigu - -Verzija htdiga koja je isporučena u Debian GNU/Linuxu 2.1 ima problem pri -pozivanju vanjskih programa za obradu ne-HTML dokumenata: ona poziva vanjski -program s dokumentom kao parametrom, ali ne provjerava izlaske u ljusku. -Ovo se može iskoristiti pravljenjem datoteka s imenima koja imaju izlaske u -ljusku, i tako pokretati druge naredbe na stroju koji pokreće htdig. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/1999/19991209.data' -#use wml::debian::translation-check translation="c394caa4b9c9f6be4fa0cea52ab6f41a1554d4f4" diff --git a/croatian/security/1999/Makefile b/croatian/security/1999/Makefile deleted file mode 100644 index 818a792178e..00000000000 --- a/croatian/security/1999/Makefile +++ /dev/null @@ -1 +0,0 @@ -include $(subst webwml/croatian,webwml/english,$(CURDIR))/Makefile diff --git a/croatian/security/1999/index.wml b/croatian/security/1999/index.wml deleted file mode 100644 index ea83980df2c..00000000000 --- a/croatian/security/1999/index.wml +++ /dev/null @@ -1,6 +0,0 @@ -Sigurnosni naputci iz 1999. -#use wml::debian::template title="Sigurnosni naputci iz 1999." GEN_TIME="yes" -#use wml::debian::recent_list -#use wml::debian::translation-check translation="118bbba7772258864cea0391dc2fcecd44b8f358" - -<:= get_recent_list ('.', '0', '$(ENGLISHDIR)/security/1999', 'list', '\d+\w*' ) :> diff --git a/croatian/security/2000/Makefile b/croatian/security/2000/Makefile deleted file mode 100644 index 818a792178e..00000000000 --- a/croatian/security/2000/Makefile +++ /dev/null @@ -1 +0,0 @@ -include $(subst webwml/croatian,webwml/english,$(CURDIR))/Makefile diff --git a/croatian/security/2000/index.wml b/croatian/security/2000/index.wml deleted file mode 100644 index f04209d327b..00000000000 --- a/croatian/security/2000/index.wml +++ /dev/null @@ -1,12 +0,0 @@ -Sigurnosni naputci iz 2000. -#use wml::debian::template title="" GEN_TIME="yes" -#use wml::debian::recent_list -#use wml::debian::translation-check translation="b8114b588961778dbd04974c1464a2f388a90c28" - -<:= get_recent_list ('.', '0', '$(ENGLISHDIR)/security/2000', '', '\d+\w*' ) :> - -

Najnovija Debian sigurnosna upozorenja možete dobiti pretplatom na našu - -debian-security-announce mailing listu. -Također možete \ -pregledati arhive te liste. diff --git a/croatian/security/2001/Makefile b/croatian/security/2001/Makefile deleted file mode 100644 index 818a792178e..00000000000 --- a/croatian/security/2001/Makefile +++ /dev/null @@ -1 +0,0 @@ -include $(subst webwml/croatian,webwml/english,$(CURDIR))/Makefile diff --git a/croatian/security/2001/dsa-066.wml b/croatian/security/2001/dsa-066.wml deleted file mode 100644 index 55f713e7b16..00000000000 --- a/croatian/security/2001/dsa-066.wml +++ /dev/null @@ -1,27 +0,0 @@ -izvanjski exploit - -Steven van Acker je na bugtraqu prijavio da je verzija cfingerda -(konfigurabilnog finger poslužitelja) distribuirana u Debian GNU/Linuxu 2.2 -ranjiva na dva problema: - -

    -
  1. Kod za čitanje konfiguracijskih datoteka (datoteka u kojima se proširuju - $ naredbe) je kopirao svoj izlaz u buffer bez provjeravanja za - prekoračenja. Kada se uključi mogućnost ALLOW_LINE_PARSING, isti kod se - koristi i za čitanje korisničkih datoteka, pa su lokalni korisnici ovo - mogli zloupotrijebiti. - -
  2. Postojao je i printf poziv u istoj rutini koji nije bio zaštićen od - printf format napada. -
- -

Budući da je ALLOW_LINE_PARSING omogućen u početnom /etc/cfingerd.conf, -lokalni korisnici su to mogli iskoristiti za dobivanje root pristupa. - -

Ovo je ispravljeno u verziji 1.4.1-1.2, i preporučamo vam da hitno -nadogradite svoj cfingerd paket. - - -# do not modify the following line -#include "$(ENGLISHDIR)/security/2001/dsa-066.data" -#use wml::debian::translation-check translation="d7dd6ef96881030b054613d7765772b369333946" diff --git a/croatian/security/2001/index.wml b/croatian/security/2001/index.wml deleted file mode 100644 index 20c56778f88..00000000000 --- a/croatian/security/2001/index.wml +++ /dev/null @@ -1,12 +0,0 @@ -Sigurnosni naputci iz 2001. -#use wml::debian::template title="" GEN_TIME="yes" -#use wml::debian::recent_list -#use wml::debian::translation-check translation="b8114b588961778dbd04974c1464a2f388a90c28" - -<:= get_recent_list ('.', '0', '$(ENGLISHDIR)/security/2001', '', 'dsa-\d+' ) :> - -

Najnovija Debian sigurnosna upozorenja možete dobiti pretplatom na našu - -debian-security-announce mailing listu. -Također možete \ -pregledati arhive te liste. diff --git a/croatian/security/undated/1land.wml b/croatian/security/undated/1land.wml deleted file mode 100644 index 8896444a549..00000000000 --- a/croatian/security/undated/1land.wml +++ /dev/null @@ -1,10 +0,0 @@ -napad lažiranjem IP-a "land" - -Krivotvoren SYN paket poslan stroju A, uz A kao odredište i izvor, te jednak -(slobodan) port kao odredište i izvor, uzrokuje rušenje. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/undated/1land.data' - -#use wml::debian::translation-check translation="b76af358a84f5c3bd509f1b8fed21d7078642fc5" diff --git a/croatian/security/undated/1mc.wml b/croatian/security/undated/1mc.wml deleted file mode 100644 index da1fe01e121..00000000000 --- a/croatian/security/undated/1mc.wml +++ /dev/null @@ -1,8 +0,0 @@ -Problem skripte u mcu. - - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/undated/1mc.data' - -#use wml::debian::translation-check translation="a344c983d62e0f902caa8d31afb51481f4b569ad" diff --git a/croatian/security/undated/1ssh.wml b/croatian/security/undated/1ssh.wml deleted file mode 100644 index 083bdacd7fb..00000000000 --- a/croatian/security/undated/1ssh.wml +++ /dev/null @@ -1,17 +0,0 @@ -nedopušteno proslijeđivanje portova - -ssh je nepovlaštenim korisnicima dopuštao preusmjeravanje povlaštenih portova. - -

Ispravljeno u ssh 1.2.21-1 i kasnijima. - -

Nedovoljno provjeravanje ovlasti može omogućiti korisniku SSH klijenta -pristup udaljenim korisničkim računima koji pripadaju korisniku ssh-agenta. - -

SSH verzije 1.2.17 do 1.2.21 su ranjivi. SSH verzije prije 1.2.17 su -ranjive na različit, iako sličan, napad. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/undated/1ssh.data' - -#use wml::debian::translation-check translation="74b3b190cc9b3e368e8d1447c8bdbeaecb2674b7" diff --git a/croatian/security/undated/1teardrop.wml b/croatian/security/undated/1teardrop.wml deleted file mode 100644 index 0d0fcf31e8e..00000000000 --- a/croatian/security/undated/1teardrop.wml +++ /dev/null @@ -1,9 +0,0 @@ -"teardrop" napad - -Problem s kodom za IP defragmentiranje drugima omogućava rušenje vašeg stroja. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/undated/1teardrop.data' - -#use wml::debian::translation-check translation="11f139834b434da130414d66c8f8120ca847f7a1" diff --git a/croatian/security/undated/1xfree.wml b/croatian/security/undated/1xfree.wml deleted file mode 100644 index 44e8bede83d..00000000000 --- a/croatian/security/undated/1xfree.wml +++ /dev/null @@ -1,9 +0,0 @@ -nesigurno stvaranje socketa - -Problem s lošim dozvolama kontrolnog socketa za X. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/undated/1xfree.data' - -#use wml::debian::translation-check translation="11f139834b434da130414d66c8f8120ca847f7a1" diff --git a/croatian/security/undated/1xfree2.wml b/croatian/security/undated/1xfree2.wml deleted file mode 100644 index 22dc5c6fa16..00000000000 --- a/croatian/security/undated/1xfree2.wml +++ /dev/null @@ -1,13 +0,0 @@ -nesigurno rukovanje datotekama - -XF86_* serveri ne provjeravaju dozvole alternativne konfiguracijske -datoteke. To običnim korisnicima omogućava čitanje prvog reda bilo koje -datoteke. - -

Ispravljeno u XF86_* 3.3.1-6 i kasnijima. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/undated/1xfree2.data' - -#use wml::debian::translation-check translation="b76af358a84f5c3bd509f1b8fed21d7078642fc5" diff --git a/croatian/security/undated/1xfree3.wml b/croatian/security/undated/1xfree3.wml deleted file mode 100644 index fa25534c843..00000000000 --- a/croatian/security/undated/1xfree3.wml +++ /dev/null @@ -1,10 +0,0 @@ -nesigurne /tmp datoteke - -Korisničke skripte za pokretanje X-a katkad stvaraju iskoristivu datoteku u -/tmp. - - -# do not modify the following line -#include '$(ENGLISHDIR)/security/undated/1xfree3.data' - -#use wml::debian::translation-check translation="b76af358a84f5c3bd509f1b8fed21d7078642fc5" diff --git a/croatian/security/undated/Makefile b/croatian/security/undated/Makefile deleted file mode 100644 index 818a792178e..00000000000 --- a/croatian/security/undated/Makefile +++ /dev/null @@ -1 +0,0 @@ -include $(subst webwml/croatian,webwml/english,$(CURDIR))/Makefile diff --git a/croatian/security/undated/index.wml b/croatian/security/undated/index.wml deleted file mode 100644 index 93d47a46794..00000000000 --- a/croatian/security/undated/index.wml +++ /dev/null @@ -1,5 +0,0 @@ -#use wml::debian::template title="Sigurnosni naputci iz kasne '97. i rane '98." GEN_TIME="yes" -#use wml::debian::recent_list -#use wml::debian::translation-check translation="118bbba7772258864cea0391dc2fcecd44b8f358" - -<:= get_recent_list ('.', '0', '$(ENGLISHDIR)/security/undated', 'list', '\d+\w*' ) :> -- cgit v1.2.3