OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: freshmeat-news-adminlists.freshmeat.net
Date: Sat Jan 27 2001 - 22:59:01 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    This is the official freshmeat newsletter for Saturday, January 27th. In
    total, 34 articles have been posted and are included in this email.

      [ advertising ]

    JFS for Linux Open Source

    IBM's journaled file system technology, currently used in IBM enterprise
    servers, is designed for high-throughput server environments, key to running
    intranet and other high-performance e-business file servers.

    http://oss.software.ibm.com/developerworks/opensource/jfs/?l=40n2

      [ article list ]

    o We are losing the browser war
    o Tech Tracker .81273 (Web/Applications)
    o Galeon 0.9-pre3 (GNOME/Networking)
    o Escher 0.2.0 (Development/Java Packages)
    o Log Tool 1.0.4 (Console/Text Utilities)
    o XEmacs 21.1.14 (X11/Editors)
    o Heyu 1.30 (Daemons/Misc)
    o Cronos II 0.1.0 (GNOME/Mail Clients)
    o tvguide 1.7.2 (Console/Misc)
    o POP3Lite 0.1.90 (Daemons/POP3)
    o moodss 13.0 (X11/Monitoring)
    o Ethereal Realms 1.3.1 (Web/Applications)
    o Jsmssend 0.1.1 (X11/Communication)
    o bfr 1.0 (Console/Utilities)
    o DINO 0.8.3 (X11/Scientific Applications)
    o repld 1.0 (Development/Tools)
    o Mp3toHtml 1.0pre1 (X11/MP3)
    o Averist 1.3.0.1 (Development/Perl Modules)
    o curl 7.6 (Console/Networking)
    o TOra 0.4 (X11/Database)
    o bind 8.2.3 (Daemons/DNS)
    o threads 3.0.1 (Development/Libraries)
    o MixMagic 0.1.7 (GNOME/Sound)
    o Debian: New version of inn2 released
    o Debian: New version of exmh released
    o Debian: New version of Apache released
    o Debian: New versions of PHP4 released
    o Debian: New version of squid released
    o Red Hat: New micq packages are available
    o Red Hat: sysstat cron entry is incorrect
    o As80 0.6.2 (Development/Languages)
    o Kpl 2.1.1 (KDE/Utilities)
    o BusyBox 0.49 (Console/Embedded)
    o Mailfilter 0.1.1 (Console/Anti-Spam)

      [ article details ]

      subject: We are losing the browser war
    posted on: Jan 27th 2001, 23:59 EST
     category: Editorial

    body:
    Anonymous has had his eye on his Web server logs lately, and is
    worried at the shift in the ratio of Netscape to IE browsers hitting
    his pages. He worries that, if we're not careful, this trend on the
    desktop could undo all the progress Linux has made in the server room,
    and he offers some ideas on how we could fix things.
    |> http://freshmeat.net/news/2001/01/27/980657999.html

              --- - --- ------ - --- -- - - - -- -

         name: Tech Tracker .81273
    posted on: Jan 27th 2001, 23:47 EST
      license: Artistic
     category: Web/Applications

     homepage: http://freshmeat.net/projects/techtracker/homepage/
     download: http://freshmeat.net/projects/techtracker/download/
    changelog: http://freshmeat.net/projects/techtracker/changelog/

    description:
    Tech Tracker is a Web-based tracking system. It has primarily been
    written to support the needs of a school system's technical support
    staff, but may actually meet the needs of a business's internal MIS/ITS
    staff.

    changes:
    This release includes many cosmetic changes including a logo, various
    bugfixes, and the introduction of a log function for the queue that
    automatically timestamps and signs new log entries.

    urgency:
    low

    |> http://freshmeat.net/projects/techtracker/

              --- - --- ------ - --- -- - - - -- -

         name: Galeon 0.9-pre3
    posted on: Jan 27th 2001, 23:38 EST
      license: GPL
     category: GNOME/Networking

     homepage: http://freshmeat.net/projects/galeon/homepage/
     download: http://freshmeat.net/projects/galeon/download/
    changelog: http://freshmeat.net/projects/galeon/changelog/

    description:
    Galeon is a GNOME Web browser based on Gecko (the Mozilla rendering
    engine). It is fast, has a light interface, and is fully
    standards-compliant.

    urgency:
    low

    |> http://freshmeat.net/projects/galeon/

              --- - --- ------ - --- -- - - - -- -

         name: Escher 0.2.0
    posted on: Jan 27th 2001, 23:38 EST
      license: GPL
     category: Development/Java Packages

     homepage: http://freshmeat.net/projects/escher/homepage/
     download: http://freshmeat.net/projects/escher/download/
    changelog: http://freshmeat.net/projects/escher/changelog/

    description:
    Escher is a collection of libraries for X Window System written purely
    in Java. It consists of an X11 protocol implementation (similar to Xlib
    for C/C++), and its extensions including GLX, and the OpenGL rendering
    protocol.

    changes:
    This release supports OpenGL via GLX, and includes examples from
    redbook (the OpenGL programming guide).

    urgency:
    medium

    |> http://freshmeat.net/projects/escher/

              --- - --- ------ - --- -- - - - -- -

         name: Log Tool 1.0.4
    posted on: Jan 27th 2001, 23:29 EST
      license: GPL
     category: Console/Text Utilities

     homepage: http://freshmeat.net/projects/logtool/homepage/
     download: http://freshmeat.net/projects/logtool/download/
    changelog: http://freshmeat.net/projects/logtool/changelog/

    description:
    Logtool is a syslog file parser, report generator, and monitoring
    utility. It takes syslog (and syslog compatible) logfiles as input from
    stdin, and depending on command line switches and/or config file
    settings, will parse and filter out unwanted messages from the logfile
    accordingly, and generate output in ANSI color, formatted ASCII, CSV
    (for spreadsheets), or HTML format. It is very handy for use in
    automated nightly reports, and online monitoring of logfile activity.
    It comes with some simple example scripts and documentation.

    changes:
    This release includes a modification to the format test to allow for
    non-standard formatting of PAM syslog messages on Red Hat 7.0.

    urgency:
    low

    |> http://freshmeat.net/projects/logtool/

              --- - --- ------ - --- -- - - - -- -

         name: XEmacs 21.1.14
    posted on: Jan 27th 2001, 23:27 EST
      license: GPL
     category: X11/Editors

     homepage: http://freshmeat.net/projects/xemacs/homepage/
     download: http://freshmeat.net/projects/xemacs/download/
    changelog: http://freshmeat.net/projects/xemacs/changelog/

    description:
    XEmacs (formerly known as Lucid Emacs) is a powerful, extensible text
    editor with full GUI support, initially based on an early version of
    GNU Emacs 19 from the Free Software Foundation and since kept up to ate
    with recent versions of that product. XEmacs stems from a collaboration
    of Lucid, Inc. with Sun Microsystems, Inc. and the University of
    Illinois with additional support having been provided by Amdahl
    Corporation, INS Engineering Corporation, and a huge amount of
    volunteer effort.

    changes:
    The release includes a major change to fix a security problem with
    gnuclient/gnuserv, as well as a number of minor fixes.

    urgency:
    high

    |> http://freshmeat.net/projects/xemacs/

              --- - --- ------ - --- -- - - - -- -

         name: Heyu 1.30
    posted on: Jan 27th 2001, 23:26 EST
      license: Freeware
     category: Daemons/Misc

     homepage: http://freshmeat.net/projects/heyu/homepage/
     download: http://freshmeat.net/projects/heyu/download/
    changelog: http://freshmeat.net/projects/heyu/changelog/

    description:
    HEYU Provides a command line interface to communicate with the CM11A
    hardware module from X10. The CM11A will send remote control signals
    over the power lines to remote modules within your house. Heyu can be
    run from cron to automate lights, sprinklers, etc. It is 2way, so it
    will report when a remote control is used, allowing you to trigger
    programs based on remote sensors. Heyu will download macros and timers
    to the CM11A so it can run in standalone mode. Heyu compiles on Linux,
    Solaris, freeBSD and AIX, among others.

    changes:
    This release includes dawn/dusk timers, a more complete installation
    script which checks for system problems, a fix for an overrun condition
    in the macros, and a configuration script. A mailing list has also been
    setup for the project.

    urgency:
    medium

    |> http://freshmeat.net/projects/heyu/

              --- - --- ------ - --- -- - - - -- -

         name: Cronos II 0.1.0
    posted on: Jan 27th 2001, 23:23 EST
      license: GPL
     category: GNOME/Mail Clients

     homepage: http://freshmeat.net/projects/cronos/homepage/
     download: http://freshmeat.net/projects/cronos/download/
    changelog: http://freshmeat.net/projects/cronos/changelog/

    description:
    Cronos II is a powerful mail client for GNOME which is very light and
    fast. It has been designed to be usable by newbies as well as advanced
    users. It has support for POP, SPOOL, SMTP, and many other protocols
    and features.

    changes:
    This is the first semi-stable release and includes numerous bugfixes
    and improvements including recording of the print module, usage of
    postscript printers, a print preview mode, recording of the net
    modules, usage of threading, new options in the preferences dialog,
    configurable colors, working draft save mode, an option to insert a
    file in the message, an option to mark messages with an exclamation
    sign, an option to manually mark messages as read, unread, replied, or
    forwarded, full automatic marking, French and Spanish translations, and
    various other UI changes and fixes.

    urgency:
    medium

    |> http://freshmeat.net/projects/cronos/

              --- - --- ------ - --- -- - - - -- -

         name: tvguide 1.7.2
    posted on: Jan 27th 2001, 16:45 EST
      license: BSD type
     category: Console/Misc

     homepage: http://freshmeat.net/projects/tvguide/homepage/
     download: http://freshmeat.net/projects/tvguide/download/

    description:
    tvguide is a Perl script that reads the TV listings from tvguide.com
    and outputs them in either ASCII text or HTML table format.

    changes:
    The method to obtain the TV listings is verified that it is installed,
    and minor bugfixes.

    urgency:
    low

    |> http://freshmeat.net/projects/tvguide/

              --- - --- ------ - --- -- - - - -- -

         name: POP3Lite 0.1.90
    posted on: Jan 27th 2001, 16:45 EST
      license: GPL
     category: Daemons/POP3

     homepage: http://freshmeat.net/projects/pop3lite/homepage/
     download: http://freshmeat.net/projects/pop3lite/download/

    description:
    POP3Lite is a module-based POP3 daemon, intended for people who want
    real flexibility.

    changes:
    Fixes for some serious bugs that could cause segmentation faults.

    urgency:
    high

    |> http://freshmeat.net/projects/pop3lite/

              --- - --- ------ - --- -- - - - -- -

         name: moodss 13.0
    posted on: Jan 27th 2001, 16:44 EST
      license: GPL
     category: X11/Monitoring

     homepage: http://freshmeat.net/projects/moodss/homepage/
     download: http://freshmeat.net/projects/moodss/download/
    changelog: http://freshmeat.net/projects/moodss/changelog/

    description:
    Moodss (the Modular Object Oriented Dynamic SpreadSheet) displays data
    described and updated in one or more modules loaded at startup time or
    dynamically. Data is originally displayed in tables. Graphical viewers,
    summary tables, free text viewers, and threshold entries can be created
    from any number of table cells. Moodss has full drag'n'drop support in
    the UI, and comes with numerous modules. New modules can be developed
    in Tcl, Perl, or C.

    changes:
    Modules can be written in the Perl language, thus greatly enhancing
    moodss flexibility. A few bugs were fixed.

    urgency:
    medium

    |> http://freshmeat.net/projects/moodss/

              --- - --- ------ - --- -- - - - -- -

         name: Ethereal Realms 1.3.1
    posted on: Jan 27th 2001, 16:00 EST
      license: GPL
     category: Web/Applications

     homepage: http://freshmeat.net/projects/etherealrealms/homepage/
     download: http://freshmeat.net/projects/etherealrealms/download/

    description:
    Ethereal Realms is a concept Web-based chat server based loosely on WBS
    and IFC which are both now defunct. This server utilizing Perl and
    MySQL emulates what WBS had (Streaming, Framed, and Basic chat) while
    removing the need for Javascript and cookies.

    changes:
    Improved summaries of useage, read-only access to realms for guests,
    and slight code cleanups.

    urgency:
    low

    |> http://freshmeat.net/projects/etherealrealms/

              --- - --- ------ - --- -- - - - -- -

         name: Jsmssend 0.1.1
    posted on: Jan 27th 2001, 16:00 EST
      license: GPL
     category: X11/Communication

     homepage: http://freshmeat.net/projects/jsmssend/homepage/
     download: http://freshmeat.net/projects/jsmssend/download/
    changelog: http://freshmeat.net/projects/jsmssend/changelog/

    description:
    Jsmssend allows you to write your SMS messages easily when you are
    offline and send them all together in a very short time. There is an
    addressbook function available and (depending on smssend) a lot of SMS
    providers are supported.

    changes:
    The addressbook works and allows you to address your SMS with one
    click. A character-counter was added which shows you the remaining
    characters of the message. Its value depends on the setting in your
    config file. A menubar was also added.

    urgency:
    low

    |> http://freshmeat.net/projects/jsmssend/

              --- - --- ------ - --- -- - - - -- -

         name: bfr 1.0
    posted on: Jan 27th 2001, 15:59 EST
      license: GPL
     category: Console/Utilities

     homepage: http://freshmeat.net/projects/buffer/homepage/
     download: http://freshmeat.net/projects/buffer/download/
    changelog: http://freshmeat.net/projects/buffer/changelog/

    description:
    bfr maintains a buffer of data collected from stdin, emitting the data
    to stdout. It will both read and write at the speed each stream can
    handle, and allows you to set thresholds of when to start outputting
    and inputting again (after reaching a full buffer), the size of the
    buffer, as well as monitor content/throughput with an optional
    progress-bar. It also includes bfp, a variant especially written to
    play audio data using /dev/dsp.

    changes:
    A fix for trampling the progress bar code bandwidth limiting support
    was added, and cleanups to the documentation and the debian/ build
    stuff.

    urgency:
    medium

    |> http://freshmeat.net/projects/buffer/

              --- - --- ------ - --- -- - - - -- -

         name: DINO 0.8.3
    posted on: Jan 27th 2001, 15:58 EST
      license: freely distributable
     category: X11/Scientific Applications

     homepage: http://freshmeat.net/projects/dino/homepage/
     download: http://freshmeat.net/projects/dino/download/
    changelog: http://freshmeat.net/projects/dino/changelog/

    description:
    DINO is a realtime visualization program for structural biology data,
    including protein and nucleic-acid coordinates, molecular surfaces,
    electrostatic potentials, electron densities, surface topographs (from
    AFM), and MD trajectories. It supports PNG, TIFF, PostScript and POVray
    (3.1g and megapov) output. Supported platforms are Linux/i386,
    Linux/PPC, IRIX, Sun, and OSF1.

    changes:
    Lots of bugfixes and new features.

    urgency:
    medium

    |> http://freshmeat.net/projects/dino/

              --- - --- ------ - --- -- - - - -- -

         name: repld 1.0
    posted on: Jan 27th 2001, 15:57 EST
      license: GPL
     category: Development/Tools

     homepage: http://freshmeat.net/projects/repld/homepage/
     download: http://freshmeat.net/projects/repld/download/

    description:
    The system linkers provided with Compaq Tru64 UNIX 4.0 and 5.0 do not
    accept multiple -rpath command-line arguments. If multiple instances
    are specified, only one is used. This differs from how the Solaris and
    IRIX linkers work. This tool, repld, is a wrapper script around the
    Tru64 ld command that accepts multiple -rpath arguments and combines
    them into one -rpath argument, separating the paths with colons.

    changes:
    Initial release.

    |> http://freshmeat.net/projects/repld/

              --- - --- ------ - --- -- - - - -- -

         name: Mp3toHtml 1.0pre1
    posted on: Jan 27th 2001, 15:57 EST
      license: GPL
     category: X11/MP3

     homepage: http://freshmeat.net/projects/mp3tohtml/homepage/
     download: http://freshmeat.net/projects/mp3tohtml/download/
    changelog: http://freshmeat.net/projects/mp3tohtml/changelog/

    description:
    Mp3toHtml indexes a collection of MP3s which is sorted by artist and
    generates a set of linked HTML pages for browsing the collection. You
    have almost full control of the output.

    changes:
    Better checks on the parameters passed, fixes for all memory-leaks
    which caused some unpredictable segfaults, fixes for the outputting of
    filenames which caused mis-interpretation by browsers, removal of lots
    of unused code, and a new Windows version.

    urgency:
    high

    |> http://freshmeat.net/projects/mp3tohtml/

              --- - --- ------ - --- -- - - - -- -

         name: Averist 1.3.0.1
    posted on: Jan 27th 2001, 15:56 EST
      license: GPL
     category: Development/Perl Modules

     homepage: http://freshmeat.net/projects/averist/homepage/
     download: http://freshmeat.net/projects/averist/download/
    changelog: http://freshmeat.net/projects/averist/changelog/

    description:
    Averist is a module that adds an authentication layer to any CGI
    application written in Perl. It supports initial authentication through
    CGI (form), and it can use CGI (hidden form fields) or cookies for
    reauthentication after a configurable timeout. It can also use a local
    or remote SQL database or DBM file for storing the session keys for
    increased security. The username and password check at the initial
    authentication can be done via an LDAP directory, an SQL database, a
    DBM file, or a passwd style file. Averist is written in Perl for easy
    customization and expansion.

    changes:
    This is a bugfix release.

    urgency:
    low

    |> http://freshmeat.net/projects/averist/

              --- - --- ------ - --- -- - - - -- -

         name: curl 7.6
    posted on: Jan 27th 2001, 15:55 EST
      license: MIT
     category: Console/Networking

     homepage: http://freshmeat.net/projects/curl/homepage/
     download: http://freshmeat.net/projects/curl/download/
    changelog: http://freshmeat.net/projects/curl/changelog/

    description:
    curl is a tool for getting a file using URL syntax. It supports HTTP,
    FTP, DICT, TELNET, HTTPS, LDAP, FILE and GOPHER as well as HTTP-post,
    HTTP-put, cookies, FTP upload, passwords, portnumbers and proxies. curl
    is built around libcurl, a multiprotocol portable file transfer library
    for URL syntax.

    changes:
    Returned functionality to krb4-ftp, multiple URL support on the command
    line, -g/--globoff can disable URL globbing, no limits on URL lengths
    anywhere, fixes for possible SSL problems, a more accurate total_time
    counter, and support for HTTP PUT resume.

    urgency:
    low

    |> http://freshmeat.net/projects/curl/

              --- - --- ------ - --- -- - - - -- -

         name: TOra 0.4
    posted on: Jan 27th 2001, 15:53 EST
      license: GPL
     category: X11/Database

     homepage: http://freshmeat.net/projects/tora/homepage/
     download: http://freshmeat.net/projects/tora/download/

    description:
    Tool for Oracle (Tora) is a tool for DBAs and database software
    developers. It is inspired by TOAD for Windows. It features a schema
    browser, SQL worksheet, PL/SQL editor & debugger, storage manager,
    rollback segment monitor, instance manager, and SQL output viewer.

    changes:
    A new PL/SQL editor and debugger with breakpoints, stack trace, and
    watches, improved support for Oracle 8.0, better syntax highlighting
    and configure, support for CLOB and BLOB datatypes, lots of bugfixes.

    urgency:
    medium

    |> http://freshmeat.net/projects/tora/

              --- - --- ------ - --- -- - - - -- -

         name: bind 8.2.3
    posted on: Jan 27th 2001, 15:48 EST
      license: OpenSource
     category: Daemons/DNS

     homepage: http://freshmeat.net/projects/bind/homepage/
     download: http://freshmeat.net/projects/bind/download/

    description:
    The Berkeley Internet Name Domain (BIND) implements an Internet name
    server for Unix operating systems. The BIND consists of a server (or
    `daemon') called `named' and a resolver library. A name server is a
    network service that enables clients to name resources or objects and
    share this information with other objects in the network.

    changes:
    Fixes for several serious security holes, many bugfixes (especially to
    IXFR and TSIG), and a new "ndc reload -noexpired" feature. "ndc status"
    shows config file name and age. Stuck stale queries are ignored after
    long zone load delay, TTL 0 is allowed in zone files, and portability
    fixes were made for WinNT. Several contrib/ packages were updated, a
    port to Darwin (Mac OS X) was made, and forwarders are used in order by
    measured RTT.

    urgency:
    high

    |> http://freshmeat.net/projects/bind/

              --- - --- ------ - --- -- - - - -- -

         name: threads 3.0.1
    posted on: Jan 27th 2001, 15:45 EST
      license: GPL
     category: Development/Libraries

     homepage: http://freshmeat.net/projects/threads/homepage/
     download: http://freshmeat.net/projects/threads/download/
    changelog: http://freshmeat.net/projects/threads/changelog/

    description:
    Threads is a library designed to make threading under C++ simpler. It
    provides a "pthread" class, with an abstract method called "thread". It
    also provides classes for mutual exclusion of parallel processes and
    condition signalling, and a semaphore class that comes in handy when
    synchronizing constructor and threaded method. The aim of the threads
    library is to provide a simple, yet powerful means of threading
    applcations, and to provide shared memory and process scoping to C++
    programs.

    changes:
    Addition of several different asynchronous delivery, and bugfixes on
    the socket class and port handling.

    urgency:
    low

    |> http://freshmeat.net/projects/threads/

              --- - --- ------ - --- -- - - - -- -

         name: MixMagic 0.1.7
    posted on: Jan 27th 2001, 15:41 EST
      license: GPL
     category: GNOME/Sound

     homepage: http://freshmeat.net/projects/mixmagic/homepage/
     download: http://freshmeat.net/projects/mixmagic/download/
    changelog: http://freshmeat.net/projects/mixmagic/changelog/

    description:
    MixMagic is hard drive sound mixing program for GNOME that can handle
    large (larger then system memory) samples. It is able to mix as many
    waves as your CPU can handle.

    changes:
    ALSA support, a new Russian translation, displaying more info in the
    blocks, and more.

    urgency:
    low

    |> http://freshmeat.net/projects/mixmagic/

              --- - --- ------ - --- -- - - - -- -

      subject: Debian: New version of inn2 released
    posted on: Jan 27th 2001, 07:15 EST
     category: Debian

     homepage: http://www.debian.org/
     download: http://security.debian.org/dists/stable/updates/main/

    body:
    Various bugs and security holes have been identified in the inn2 package,
    details of which can be found in the body of this advisory. Updated
    packages are available from security.debian.org.

    o download

    |> http://freshmeat.net/news/2001/01/27/980597716.html

              --- - --- ------ - --- -- - - - -- -

      subject: Debian: New version of exmh released
    posted on: Jan 27th 2001, 07:13 EST
     category: Debian

     homepage: http://www.debian.org/
     download: http://security.debian.org/dists/stable/updates/main/

    body:
    Former versions of the exmh program used /tmp for storing temporary files.
    No checks were made to ensure that nobody placed a symlink with the same
    name in /tmp in the meantime and thus was vulnerable to a symlink attack.
    This could lead to a malicious local user being able to overwrite any file
    writable by the user executing exmh. Upstream developers have reported and
    fixed this. The exmh program
    now use /tmp/login now unless TMPDIR or EXMHTMPDIR is set.
    Updated packages are available from security.debian.org.

    o download

    |> http://freshmeat.net/news/2001/01/27/980597597.html

              --- - --- ------ - --- -- - - - -- -

      subject: Debian: New version of Apache released
    posted on: Jan 27th 2001, 07:11 EST
     category: Debian

     homepage: http://www.debian.org/
     download: http://security.debian.org/dists/stable/updates/main/

    body:
    WireX have found some occurrences of insecure opening of temporary
    files in htdigest and htpasswd. Both programs are not installed setuid or
    setgid and thus the impact should be minimal. The Apache group has
    released another security bugfix which fixes a vulnerability in mod_rewrite
    which may result the remote attacker to access arbitrary files on the web
    server. Updated packages are available from security.debian.org.

    o download

    |> http://freshmeat.net/news/2001/01/27/980597484.html

              --- - --- ------ - --- -- - - - -- -

      subject: Debian: New versions of PHP4 released
    posted on: Jan 27th 2001, 07:09 EST
     category: Debian

     homepage: http://www.debian.org/
     download: http://security.debian.org/dists/stable/updates/main/

    body:
    The Zend people have found a vulnerability in older versions of PHP4 (the
    original advisory speaks of 4.0.4 while the bugs are present in 4.0.3 as
    well). It is possible to specify PHP directives on a per-directory basis
    which leads to a remote attacker crafting an HTTP request that would cause
    the next page to be served with the wrong
    values for these directives. Also even if PHP is nstalled, it can be
    activated and deactivated on a per-directory or per-virtual host basis
    using the engine=on or engine=off directive. This setting can be
    leaked to other virtual hosts on the same machine, effectively disabling
    PHP for those hosts and resulting in PHP source code being sent to the
    client instead of being executed on the server. Updated packages are
    available from security.debian.org.

    o download

    |> http://freshmeat.net/news/2001/01/27/980597363.html

              --- - --- ------ - --- -- - - - -- -

      subject: Debian: New version of squid released
    posted on: Jan 27th 2001, 07:06 EST
     category: Debian

     homepage: http://www.debian.org/
     download: http://security.debian.org/dists/stable/updates/main/

    body:
    WireX discovered a potential temporary file race condition in the way that
    squid sends out email messages notifying the administrator about updating
    the program. This could lead to arbitrary files to get overwritten.
    However the code would only be executed if running a very bleeding edge
    release of squid, running a server whose time is set some number of months
    in the past and squid is crashing. Read it
    as hardly to exploit. This version also containes more upstream bugfixes
    wrt. dots in hostnames and unproper HTML quoting. Debian packages are
    available from security.debian.org.

    o download

    |> http://freshmeat.net/news/2001/01/27/980597205.html

              --- - --- ------ - --- -- - - - -- -

      subject: Red Hat: New micq packages are available
    posted on: Jan 27th 2001, 07:01 EST
     category: Red Hat

     homepage: http://www.redhat.com/
     download: ftp://updates.redhat.com/7.0/

    body:
    A buffer overflow exists in the micq package, which allows arbitrary
    commands to be executed. Updated packages are available from updates.redhat.com.

    |> http://freshmeat.net/news/2001/01/27/980596866.html

              --- - --- ------ - --- -- - - - -- -

      subject: Red Hat: sysstat cron entry is incorrect
    posted on: Jan 27th 2001, 06:59 EST
     category: Red Hat

     homepage: http://www.redhat.com/
     download: ftp://updates.redhat.com/7.0/

    body:
    sysstat, the package which provides the sar and iostat facilities, provides
    an invalid crontab entry in Red Hat Linux 7.0. This causes the I/O
    summaries to never get updated. Updated packages are available from updates.redhat.com.

    |> http://freshmeat.net/news/2001/01/27/980596774.html

              --- - --- ------ - --- -- - - - -- -

         name: As80 0.6.2
    posted on: Jan 27th 2001, 05:52 EST
      license: GPL
     category: Development/Languages

     homepage: http://freshmeat.net/projects/as80/homepage/
     download: http://freshmeat.net/projects/as80/download/
    changelog: http://freshmeat.net/projects/as80/changelog/

    description:
    As80 is a lightweight 8080/8085 assembler that relies on standard UN*X
    tools for some of its functionality.

    changes:
    This release includes various bugfixes and code clean-ups.

    urgency:
    low

    |> http://freshmeat.net/projects/as80/

              --- - --- ------ - --- -- - - - -- -

         name: Kpl 2.1.1
    posted on: Jan 27th 2001, 05:50 EST
      license: GPL
     category: KDE/Utilities

     homepage: http://freshmeat.net/projects/kpl/homepage/
     download: http://freshmeat.net/projects/kpl/download/

    description:
    kpl is a KDE program for two-dimensional graphical presentation of data
    sets and functions (plotter). Multidimensional nonlinear parameter fits
    of functions to data sets can be performed using the
    Levenberg-Marquardt algorithm. General linear least square parameter
    fits are also possible. A DCOP interface can be used to control Kpl by
    other applications and scripts.

    changes:
    This is mostly a bugfix release.

    urgency:
    low

    |> http://freshmeat.net/projects/kpl/

              --- - --- ------ - --- -- - - - -- -

         name: BusyBox 0.49
    posted on: Jan 27th 2001, 05:50 EST
      license: GPL
     category: Console/Embedded

     homepage: http://freshmeat.net/projects/busybox/homepage/
     download: http://freshmeat.net/projects/busybox/download/
    changelog: http://freshmeat.net/projects/busybox/changelog/

    description:
    BusyBox combines tiny versions of many common UNIX utilities into a
    single small executable. It provides minimalist replacements for most
    of the utilities you usually find in GNU fileutils, shellutils, etc.
    The utilities in BusyBox generally have fewer options than their
    full-featured GNU cousins; however, the options that are included
    provide the expected functionality and behave very much like their GNU
    counterparts. BusyBox provides a fairly complete POSIX environment for
    any small or embedded system.

    changes:
    This release includes several new applets, as well as many bugfixes and
    clean-ups.

    urgency:
    low

    |> http://freshmeat.net/projects/busybox/

              --- - --- ------ - --- -- - - - -- -

         name: Mailfilter 0.1.1
    posted on: Jan 27th 2001, 05:49 EST
      license: GPL
     category: Console/Anti-Spam

     homepage: http://freshmeat.net/projects/mailfilter/homepage/
     download: http://freshmeat.net/projects/mailfilter/download/
    changelog: http://freshmeat.net/projects/mailfilter/changelog/

    description:
    Mailfilter is a flexible utility to get rid of unwanted spam mails,
    before having to go through the trouble of downloading them into the
    local computer. It offers support for one or many POP3 accounts and is
    especially useful for dialup connections via modem. You can define your
    own filters (rules) to determine which e-mails should be delivered and
    which are considered waste.

    changes:
    This release includes a test mode to experiment with mail filtering,
    enhanced 'normalisation' of subject strings, proper man pages, and some
    minor bugfixes.

    urgency:
    low

    |> http://freshmeat.net/projects/mailfilter/

              --- - --- ------ - --- -- - - - -- -

    that's it for today.
    the freshmeat news squad

              --- - --- ------ - --- -- - - - -- -

    _______________________________________________
    The freshmeat daily newsletter
    To unsubscribe, send email to freshmeat-news-requestlists.freshmeat.net
    or visit http://lists.freshmeat.net/mailman/listinfo/freshmeat-news