Tuesday, September 23, 2003

New Vulnerabilities in Portable OpenSSH
New Vulnerabilities in Portable OpenSSH

Security

Technology/IT

Programming

Posted by michael on Tuesday September 23, @04:02PM

from the will-get-it-right-eventually dept.

An anonymous reader writes "The OpenSSH team has uncovered multiple exploitable vulnerabilities in the days-old portable release of OpenSSH. That's right folks: time to patch *again*. 3.7.1p2 is now available. Instructions and mirror list here. Please note that this vulnerability only affects *portable* OpenSSH--so if you are running OpenBSD, you're safe. This vulnerability apparently has to do with PAM, so you can use the 'UsePam no' option in your config file. Info on the advisory here and here."
 [Slashdot]
8:16:27 PM    comment []  


Red Hat Spreading Its Linux Wings. Open-source software provider Red Hat Inc. is the latest vendor to embrace the concept of providing layered add-on services above the operating system that it can potentially charge customers more for. [eWEEK Technology News]

Following on the heels of yesterday's announcement of the change in development scheme and the dropping of RHL, this piece of news underscores RH's repositioning as a player in the strategic enterprise market.  I think what we're really seeing her eis the death of the 'give away the software and charge them for support' model of open source based business.  RH is looking at solidifying its postion as the top provider of Linux-based solutions the old-fashioned way: by making business pay.  The key is that it still less expensive than the alternatives.

9:51:02 AM    comment []