Study: Attacks on package managers




















































 
OSgram.com   >   News   >   Study: Attacks on package managers
  Free IQ Test!

Related Pages:
Source: LWN.net

Study: Attacks on package managers


The University of Arizona is publishing a study on security problems with package management systems. The core problem would appear to be that tools like yum and apt will happily install versions of packages with known vulnerabilities if they think that's the most recent version available. And feeding such packages to the package managers is not a bit challenge: "To give an example of how easy it is for a malicious party to obtain a mirror, we ran an experiment where we created a fake administrator and company name and leased a server from a hosting provider. We were able to get our mirror listed on every distribution we tried (Ubuntu, Fedora, OpenSuSE, CentOS, and Debian) and our mirrors were contacted by thousands of clients, even including military and government computers!"

Read full story... 
More stories about:
  123inkjets.com - Printer Ink, Toner, & More


 
     

RED HAT SOFTWARE Red Hat Linux 9.0 Pro

Red Hat
CD-ROM (Linux)
Linux

RED HAT SOFTWARE Red Hat Linux 9.0 Pro


Red Hat Linux 7.2

Red Hat
CD-ROM (Linux)
Linux

Red Hat Linux 7.2


Red Hat Linux 8.0 Professional

Compaq
CD-ROM (Linux)
Windows NT/Linux/Windows 98/Windows Me

Red Hat Linux 8.0 Professional


Red Hat Linux 9.0 Personal

Red Hat
Released: 2003-04-14
CD-ROM (Linux)
Linux

Red Hat Linux 9.0 Personal


Red Hat Linux 8.0 Personal

Red Hat
Released: 2002-09-30
CD-ROM (Linux)
Linux

Red Hat Linux 8.0 Personal


Red Hat Linux 7.3 Personal

Red Hat
CD-ROM (Linux)
Windows NT/Linux/Windows 98/Windows Me

Red Hat Linux 7.3 Personal


openSUSE Linux 10.2 (x86)

Novell
DVD-ROM

openSUSE Linux 10.2 (x86)


RED HAT LINUX 7.3 PROFESSIONAL

Red Hat
CD-ROM (Linux)
Windows NT/Linux/Windows 98/Windows Me

RED HAT LINUX 7.3 PROFESSIONAL


Red Hat Linux 7.1

Red Hat
Released: 2001-04-26
Red Hat Linux 7.1 CD-ROM (Linux)
Linux

Red Hat Linux 7.1


The Complete Linux Operating System 6.5 (Red Hat Linux 6.1 with enhacements)

Macmillan USA
CD-ROM
Windows 95

The Complete Linux Operating System 6.5 (Red Hat Linux 6.1 with enhacements)

   
Shopping
 
  Books

  Clothing

  Magazines

  Penguins

  Software
 

News
 
  Latest Stories

  Companies

  Conferences

  Embedded

  Mobile

  Patents

  Security

  Software

  VoIP
 



Safeguard and access your files with Xdrive.
 
 
Privacy   Terms Of Use

Copyright © 2006-2008, Answers 2000 Limited.

News stories are provided by third parties, used with permission, and copyright of their various respective owners. Answers 2000 Limited has not necessarily reviewed, and does not necessarily endorse or agree with any content of, or views expressed in, all such items.

Answers 2000 Limited has not necessarily reviewed, and does not necessarily endorse or agree with any content of, or views expressed in, comments posted by users.

In Association With Amazon.com
In Assocation With AllPosters.com
 
Penguins!