Tuesday, June 03, 2003


Interactive Television Publishing System 0.4 The Interactive Television Publishing System (ITPS) offers a simple way to produce ATVEF-A compliant ETV features. At the heart of the system is a database that separates form (in this case, device-specific markup code) from content (text and images appropriate to show segments). Database content is published to HTML via Perl using device-specific modules. A handful of additional static HTML pages, such as the search form, make up the remainder of the code required to support a particular client device. Devices are routed to appropriate pages via a "sniffer" page, implemented using the XSSI syntax available in Apache 1.3 or higher.  [freshmeat.net]
10:19:58 PM    

LURHQ Corporation:"CERT Advisory CA-2003-09 describes a buffer overflow in core Microsoft Windows DLL ntdll.dll. The vulnerability was found to be exploitable through the WebDav publishing service of IIS 5.0. Since the release of the advisory, several exploits have surfaced, with varying degrees of effectiveness. While the fact that this exploit requires too much brute-forcing to make an efficient worm, it remains that a dedicated attacker will always be able to penetrate a vulnerable IIS server over a period of time. This paper is intended to catalog the various exploits available and provide Snort signatures to detect each one. If you know of any original WebDav exploits not listed here, send details to Joe Stewart "

I don't know how, but this keeps turning up on our Win2k boxes though they are patched up properly.


12:24:03 PM    

Ripping from Vinyl, Simplified

Ripping from Vinyl, Simplified
Music
Software
Media
Posted by timothy on Tuesday June 03, @06:28AM
from the one-groove-per-side dept.
An anonymous reader writes "In a short article at linmagau.org John Murray brings Gramofile to our attention, just the thing to help you bring all those LPs in the cupboard into your MP3 collection. One more example of the analog hole in action, I guess ;)" It may not be CEDAR, but it sounds like a lot of utility for a 76kB program.

[Slashdot]


9:04:34 AM    

The CerfCube as an Embedded Linux Server. How to build and install web and FTP servers, plus some development tools, on the CerfCube. [Linux Journal]
9:00:29 AM    

Python Desktop Server 0.5.1 This release includes many feature enhancements, most notably the patches to the restructured text engine, the stray link resolving, and the WikiTool that is now part of the distribution.  [freshmeat.net]

NB: probably won't run in windows, even with Pythin installed.


8:54:12 AM