<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Linux Security Weekly</title>
	<atom:link href="http://scottlinux.com/feed/podcast/" rel="self" type="application/rss+xml" />
	<link>http://scottlinux.com</link>
	<description>Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</description>
	<lastBuildDate>Fri, 17 May 2013 00:34:49 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<copyright>Creative Commons Attribution-ShareAlike 3.0 Unported (CC BY-SA 3.0) http://creativecommons.org/licenses/by-sa/3.0/</copyright>
	<managingEditor>scottlinux@gmail.com (scottlinux.com)</managingEditor>
	<webMaster>scottlinux@gmail.com (scottlinux.com)</webMaster>
	<category>Technology</category>
	<ttl>1440</ttl>
	<image>
		<url>http://scottlinux.com/wp-content/uploads/2012/05/linux_security_podcast_144.png</url>
		<title>Linux Security Weekly</title>
		<link>http://scottlinux.com</link>
		<width>144</width>
		<height>144</height>
	</image>
	<itunes:subtitle>Linux Security Weekly</itunes:subtitle>
	<itunes:summary>Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</itunes:summary>
	<itunes:keywords>linux, open, source, security</itunes:keywords>
	<itunes:category text="Technology" />
	<itunes:author>scottlinux.com</itunes:author>
	<itunes:owner>
		<itunes:name>scottlinux.com</itunes:name>
		<itunes:email>scottlinux@gmail.com</itunes:email>
	</itunes:owner>
	<itunes:block>no</itunes:block>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://scottlinux.com/wp-content/uploads/2012/05/linux_security_podcast_300.png" />
		<item>
		<title>Linux Security Weekly &#124; 027</title>
		<link>http://scottlinux.com/2012/12/02/linux-security-weekly-027/</link>
		<comments>http://scottlinux.com/2012/12/02/linux-security-weekly-027/#comments</comments>
		<pubDate>Mon, 03 Dec 2012 02:27:08 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3819</guid>
		<description><![CDATA[Linux Security Weekly &#124; 027 &#124; Hello and welcome to Linux Security Weekly for December 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Firefox 17.0.1 Firefox ESR (10.0.11) http://www.mozilla.org/security/known-vulnerabilities/firefox.html http://www.mozilla.org/en-US/firefox/17.0.1/releasenotes/ http://www.mozilla.org/en-US/firefox/organizations/all.html PHP 5.4.9 and PHP 5.3.19 http://www.php.net/index.php#id2012-11-22-1 Linux rootkit]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for December 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>Firefox 17.0.1<br/><br />
Firefox ESR (10.0.11)<br/></p>
<p>http://www.mozilla.org/security/known-vulnerabilities/firefox.html<br/></p>
<p>http://www.mozilla.org/en-US/firefox/17.0.1/releasenotes/<br/></p>
<p>http://www.mozilla.org/en-US/firefox/organizations/all.html<br/><br/></p>
<p>PHP 5.4.9 and PHP 5.3.19<br/></p>
<p>http://www.php.net/index.php#id2012-11-22-1<br/><br/></p>
<p>Linux rootkit going around that injects iframe in web server pages<br/></p>
<p>http://blog.crowdstrike.com/2012/11/http-iframe-injecting-linux-rootkit.html<br/></p>
<p>http://seclists.org/fulldisclosure/2012/Nov/94<br/><br/></p>
<p>Chrome 23.0.1271.91<br/></p>
<p>http://googlechromereleases.blogspot.com/2012/11/stable-channel-update.html<br/><br/></p>
<p>nmap 6.25<br/></p>
<p>http://seclists.org/nmap-hackers/2012/4<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>thunderbird<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1483.html<br/><br/></p>
<p>firefox<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1482.html<br/><br/></p>
<p>java-1.4.2-ibm<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1485.html<br/><br/></p>
<p>libxml2<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1512.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>tomcat<br/></p>
<p>http://www.ubuntu.com/usn/usn-1637-1/<br/><br/></p>
<p>thunderbird<br/></p>
<p>http://www.ubuntu.com/usn/usn-1636-1/<br/><br/></p>
<p>firefox<br/></p>
<p>http://www.ubuntu.com/usn/usn-1638-1/<br/><br/></p>
<p>libssh<br/></p>
<p>http://www.ubuntu.com/usn/usn-1640-1/<br/><br/></p>
<p>perl<br/></p>
<p>http://www.ubuntu.com/usn/usn-1643-1/<br/><br/></p>
<p>kernel<br/></p>
<p>http://www.ubuntu.com/usn/usn-1644-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1646-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1648-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1650-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1651-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>rssh<br/></p>
<p>http://www.debian.org/security/2012/dsa-2578<br/><br/></p>
<p>apache2 &#8211; CRIME fix!<br/></p>
<p>http://www.debian.org/security/2012/dsa-2579<br/><br/></p>
<p>libssh<br/></p>
<p>http://www.debian.org/security/2012/dsa-2577<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/12/02/linux-security-weekly-027/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/12/lsw027-02dec12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 027 &#124; Hello and welcome to Linux Security Weekly for December 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 027 &#124; Hello and welcome to Linux Security Weekly for December 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Firefox 17.0.1 Firefox ESR (10.0.11) http://www.mozilla.org/security/known-vulnerabilities/firefox.html http://www.mozilla.org/en-US/firefox/17.0.1/releasenotes/ http://www.mozilla.org/en-US/firefox/organizations/all.html PHP 5.4.9 and PHP 5.3.19 http://www.php.net/index.php#id2012-11-22-1 Linux rootkit</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 026</title>
		<link>http://scottlinux.com/2012/11/18/linux-security-weekly-026/</link>
		<comments>http://scottlinux.com/2012/11/18/linux-security-weekly-026/#comments</comments>
		<pubDate>Mon, 19 Nov 2012 01:26:28 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3813</guid>
		<description><![CDATA[Linux Security Weekly &#124; 026 &#124; Hello and welcome to Linux Security Weekly for November 18, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News PHP 5.5.0 Alpha1 released http://www.php.net/index.php#id2012-11-15-1 FreeBSD security incident http://www.freebsd.org/news/2012-compromise.html Drupal 7.17 – maintenance update http://drupal.org/drupal-7.17-release-notes Google]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for November 18, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>PHP 5.5.0 Alpha1 released<br/></p>
<p>http://www.php.net/index.php#id2012-11-15-1<br/><br/></p>
<p>FreeBSD security incident<br/></p>
<p>http://www.freebsd.org/news/2012-compromise.html<br/><br/></p>
<p>Drupal 7.17 &#8211; maintenance update<br/></p>
<p>http://drupal.org/drupal-7.17-release-notes<br/><br/></p>
<p>Google Chrome announced flash is fully sandboxed on Chrome on all platforms<br/></p>
<p>http://chrome.blogspot.ca/2012/11/securing-flash-player-for-our-mac-users.html<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>kernel<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1445.html<br/><br/></p>
<p>mysql<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1462.html<br/><br/></p>
<p>ibm java<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1467.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1466.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1465.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>libproxy<br/></p>
<p>http://www.ubuntu.com/usn/usn-1629-1/<br/><br/></p>
<p>libav<br/></p>
<p>http://www.ubuntu.com/usn/usn-1630-1/<br/><br/></p>
<p>libtiff<br/></p>
<p>http://www.ubuntu.com/usn/usn-1631-1/<br/><br/></p>
<p>django<br/></p>
<p>http://www.ubuntu.com/usn/usn-1632-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>typo3<br/></p>
<p>http://www.debian.org/security/2012/dsa-2574<br/><br/></p>
<p>Extras<br/><br/></p>
<p>Adobe&#8217;s connectusers.com breach<br/><br/></p>
<p>http://connectusers.com/<br/><br/></p>
<p>http://www.theregister.co.uk/2012/11/16/adobe_forum_breach/<br/><br/></p>
<p>http://www.darkreading.com/blog/240134996/adobe-hacker-says-he-used-sql-injection-to-grab-database-of-150-000-user-accounts.html<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/11/18/linux-security-weekly-026/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/11/lsw026-18nov12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 026 &#124; Hello and welcome to Linux Security Weekly for November 18, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for th[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 026 &#124; Hello and welcome to Linux Security Weekly for November 18, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News PHP 5.5.0 Alpha1 released http://www.php.net/index.php#id2012-11-15-1 FreeBSD security incident http://www.freebsd.org/news/2012-compromise.html Drupal 7.17 – maintenance update http://drupal.org/drupal-7.17-release-notes Google</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 025</title>
		<link>http://scottlinux.com/2012/11/11/linux-security-weekly-025/</link>
		<comments>http://scottlinux.com/2012/11/11/linux-security-weekly-025/#comments</comments>
		<pubDate>Mon, 12 Nov 2012 02:19:22 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3799</guid>
		<description><![CDATA[Linux Security Weekly &#124; 025 &#124; Hello and welcome to Linux Security Weekly for November 11, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News joomla http://blog.sucuri.net/2012/11/joomla-2-5-8-and-3-0-2-released-security-updates.html http://developer.joomla.org/security/news/544-20121102-core-clickjacking http://developer.joomla.org/security/news/541-20121001-core-xss-vulnerability XSS vulnerability in swfupload in WordPress http://seclists.org/fulldisclosure/2012/Nov/51 https://nealpoole.com/blog/2012/05/xss-and-csrf-via-swf-applets-swfupload-plupload/ netOffice Dwins SQL Injection]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for November 11, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>joomla<br/></p>
<p>http://blog.sucuri.net/2012/11/joomla-2-5-8-and-3-0-2-released-security-updates.html<br/></p>
<p>http://developer.joomla.org/security/news/544-20121102-core-clickjacking<br/></p>
<p>http://developer.joomla.org/security/news/541-20121001-core-xss-vulnerability<br/><br/></p>
<p>XSS vulnerability in swfupload in WordPress<br/></p>
<p>http://seclists.org/fulldisclosure/2012/Nov/51<br/></p>
<p>https://nealpoole.com/blog/2012/05/xss-and-csrf-via-swf-applets-swfupload-plupload/<br/><br/></p>
<p>netOffice Dwins SQL Injection Vulnerability<br/></p>
<p>http://www.exploit-db.com/exploits/22590/<br/></p>
<p>http://sourceforge.net/projects/netofficedwins/<br/><br/></p>
<p>plone<br/></p>
<p>http://plone.org/products/plone-hotfix/releases/20121106<br/></p>
<p>http://plone.org/products/plone/security/advisories/20121106<br/><br/></p>
<p>chrome<br/></p>
<p>http://googlechromereleases.blogspot.com/2012/11/stable-channel-release-and-beta-channel.html<br/><br/></p>
<p>webmin<br/></p>
<p>http://www.webmin.com/updates.html<br/></p>
<p>https://secunia.com/advisories/51201/<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>kernel<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1426.html<br/><br/></p>
<p>icedtea web plugin<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1434.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>mysql<br/></p>
<p>http://www.ubuntu.com/usn/usn-1621-1/<br/><br/></p>
<p>icedtea-web<br/></p>
<p>http://www.ubuntu.com/usn/usn-1625-1/<br/><br/></p>
<p>apache (<b>Backport fix for CRIME attack!</b>)<br/></p>
<p>http://www.ubuntu.com/usn/usn-1627-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>libproxy<br/></p>
<p>http://www.debian.org/security/2012/dsa-2571<br/><br/></p>
<p>radsecproxy<br/></p>
<p>http://www.debian.org/security/2012/dsa-2573<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/11/11/linux-security-weekly-025/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/11/lsw025-11nov12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 025 &#124; Hello and welcome to Linux Security Weekly for November 11, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for th[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 025 &#124; Hello and welcome to Linux Security Weekly for November 11, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News joomla http://blog.sucuri.net/2012/11/joomla-2-5-8-and-3-0-2-released-security-updates.html http://developer.joomla.org/security/news/544-20121102-core-clickjacking http://developer.joomla.org/security/news/541-20121001-core-xss-vulnerability XSS vulnerability in swfupload in WordPress http://seclists.org/fulldisclosure/2012/Nov/51 https://nealpoole.com/blog/2012/05/xss-and-csrf-via-swf-applets-swfupload-plupload/ netOffice Dwins SQL Injection</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 024</title>
		<link>http://scottlinux.com/2012/11/04/linux-security-weekly-024/</link>
		<comments>http://scottlinux.com/2012/11/04/linux-security-weekly-024/#comments</comments>
		<pubDate>Sun, 04 Nov 2012 23:52:22 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3788</guid>
		<description><![CDATA[Linux Security Weekly &#124; 024 &#124; Hello and welcome to Linux Security Weekly for November 4, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Plone CMS http://plone.org/products/plone/security/advisories/20120830 Popular sites with Apache server-status enabled http://blog.sucuri.net/2012/10/popular-sites-with-apache-server-status-enabled.html libvirt 1.0.0 http://berrange.com/posts/2012/11/02/announce-libvirt-1-0-0-release-and-7th-birthday/ http://libvirt.org/news.html http://libvirt.org/ OpenBSD]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for November 4, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>Plone CMS<br/></p>
<p>http://plone.org/products/plone/security/advisories/20120830<br/><br/></p>
<p>Popular sites with Apache server-status enabled<br/></p>
<p>http://blog.sucuri.net/2012/10/popular-sites-with-apache-server-status-enabled.html<br/><br/></p>
<p>libvirt 1.0.0<br/></p>
<p>http://berrange.com/posts/2012/11/02/announce-libvirt-1-0-0-release-and-7th-birthday/<br/></p>
<p>http://libvirt.org/news.html<br/></p>
<p>http://libvirt.org/<br/><br/></p>
<p>OpenBSD 5.2<br/></p>
<p>http://www.h-online.com/security/news/item/OpenBSD-5-2-arrives-with-improved-multi-core-support-1742192.html<br/></p>
<p>http://openbsd.org/52.html<br/><br/></p>
<p>Burp Suite 1.5<br/></p>
<p>http://blog.portswigger.net/2012/10/burp-suite-free-edition-v15-released.html<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>thunderbird<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1413.html<br/><br/></p>
<p>kdelibs<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1416.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1418.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>thunderbird<br/></p>
<p>http://www.ubuntu.com/usn/usn-1620-2/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>icedove<br/></p>
<p>http://www.debian.org/security/2012/dsa-2569<br/><br/></p>
<hr/>
<b>Extras</b><br/><br/></p>
<p><b>Security and Sysadmin related podcasts you should check out</b><br/><br/></p>
<p>http://packetpushers.net/<br/><br/></p>
<p>http://www.jupiterbroadcasting.com/show/techsnap/<br/><br/></p>
<p>http://twit.tv/sn<br/><br/></p>
<p>http://hak5.org/<br/><br/></p>
<p>http://crypto-gram.libsyn.com/<br/><br/></p>
<p>http://pauldotcom.com/<br/><br/></p>
<p>http://www.mckeay.net<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/11/04/linux-security-weekly-024/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/11/lsw024-04nov12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 024 &#124; Hello and welcome to Linux Security Weekly for November 4, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 024 &#124; Hello and welcome to Linux Security Weekly for November 4, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Plone CMS http://plone.org/products/plone/security/advisories/20120830 Popular sites with Apache server-status enabled http://blog.sucuri.net/2012/10/popular-sites-with-apache-server-status-enabled.html libvirt 1.0.0 http://berrange.com/posts/2012/11/02/announce-libvirt-1-0-0-release-and-7th-birthday/ http://libvirt.org/news.html http://libvirt.org/ OpenBSD</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 023</title>
		<link>http://scottlinux.com/2012/10/28/linux-security-weekly-023/</link>
		<comments>http://scottlinux.com/2012/10/28/linux-security-weekly-023/#comments</comments>
		<pubDate>Mon, 29 Oct 2012 01:37:32 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3761</guid>
		<description><![CDATA[Linux Security Weekly &#124; 023 &#124; Hello and welcome to Linux Security Weekly for October 28, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News exim https://lists.exim.org/lurker/message/20121026.080330.74b9147b.en.html https://lists.exim.org/lurker/message/20121026.083548.4647373a.en.html firefox https://www.mozilla.org/security/known-vulnerabilities/firefox.html https://www.mozilla.org/security/announce/2012/mfsa2012-90.html phpmyadmin http://www.phpmyadmin.net/home_page/security/PMASA-2012-6.php http://www.phpmyadmin.net/home_page/security/PMASA-2012-7.php VirtualBox 4.2.4 (released 2012-10-26) https://www.virtualbox.org/wiki/Changelog Distro Updates]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for October 28, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>exim<br/></p>
<p>https://lists.exim.org/lurker/message/20121026.080330.74b9147b.en.html<br/></p>
<p>https://lists.exim.org/lurker/message/20121026.083548.4647373a.en.html<br/><br/></p>
<p>firefox<br/></p>
<p>https://www.mozilla.org/security/known-vulnerabilities/firefox.html<br/></p>
<p>https://www.mozilla.org/security/announce/2012/mfsa2012-90.html<br/><br/></p>
<p>phpmyadmin<br/></p>
<p>http://www.phpmyadmin.net/home_page/security/PMASA-2012-6.php<br/></p>
<p>http://www.phpmyadmin.net/home_page/security/PMASA-2012-7.php<br/><br/></p>
<p>VirtualBox 4.2.4 (released 2012-10-26)<br/></p>
<p>https://www.virtualbox.org/wiki/Changelog<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>6.2 EUS kernel<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1401.html<br/><br/></p>
<p>firefox<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1407.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>ruby<br/></p>
<p>http://www.ubuntu.com/usn/usn-1614-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1603-2/<br/><br/></p>
<p>python<br/></p>
<p>http://www.ubuntu.com/usn/usn-1615-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1616-1/<br/><br/></p>
<p>webkit<br/></p>
<p>http://www.ubuntu.com/usn/usn-1617-1/<br/><br/></p>
<p>exim<br/></p>
<p>http://www.ubuntu.com/usn/usn-1618-1/<br/><br/></p>
<p>openjdk<br/></p>
<p>http://www.ubuntu.com/usn/usn-1619-1/<br/><br/></p>
<p>firefox<br/></p>
<p>http://www.ubuntu.com/usn/usn-1620-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>bind<br/></p>
<p>http://www.debian.org/security/2012/dsa-2560<br/><br/></p>
<p>tiff<br/></p>
<p>http://www.debian.org/security/2012/dsa-2561<br/><br/></p>
<p>exim<br/></p>
<p>http://www.debian.org/security/2012/dsa-2566<br/><br/></p>
<hr/>
<b>Extras</b><br/><br/></p>
<p>DKIM and why you should not use weak keys<br/><br/></p>
<p>http://www.dkim.org/<br/><br/></p>
<p>http://www.wired.com/threatlevel/2012/10/dkim-vulnerability-widespread/<br/><br/><br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/10/28/linux-security-weekly-023/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/10/lsw023-28oct12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 023 &#124; Hello and welcome to Linux Security Weekly for October 28, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 023 &#124; Hello and welcome to Linux Security Weekly for October 28, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News exim https://lists.exim.org/lurker/message/20121026.080330.74b9147b.en.html https://lists.exim.org/lurker/message/20121026.083548.4647373a.en.html firefox https://www.mozilla.org/security/known-vulnerabilities/firefox.html https://www.mozilla.org/security/announce/2012/mfsa2012-90.html phpmyadmin http://www.phpmyadmin.net/home_page/security/PMASA-2012-6.php http://www.phpmyadmin.net/home_page/security/PMASA-2012-7.php VirtualBox 4.2.4 (released 2012-10-26) https://www.virtualbox.org/wiki/Changelog Distro Updates</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 022</title>
		<link>http://scottlinux.com/2012/10/21/linux-security-weekly-022/</link>
		<comments>http://scottlinux.com/2012/10/21/linux-security-weekly-022/#comments</comments>
		<pubDate>Mon, 22 Oct 2012 00:49:47 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3736</guid>
		<description><![CDATA[Linux Security Weekly &#124; 022 &#124; Hello and welcome to Linux Security Weekly for October 21, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Oracle quarterly patch http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html 14 MySQL CVEs that we will never see http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html#AppendixMSQL mod_security 2.7.0 https://twitter.com/ModSecurity/status/258374512851173378]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for October 21, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>Oracle quarterly patch<br/></p>
<p>http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html<br/><br/></p>
<p>14 MySQL CVEs that we will never see<br/></p>
<p>http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html#AppendixMSQL<br/><br/></p>
<p>mod_security 2.7.0<br/></p>
<p>https://twitter.com/ModSecurity/status/258374512851173378<br/></p>
<p>http://mod-security.svn.sourceforge.net/viewvc/mod-security/m2/branches/2.7.x/CHANGES<br/><br/></p>
<p>Django<br/></p>
<p>https://www.djangoproject.com/weblog/2012/oct/17/security/<br/><br/></p>
<p>Virtualbox 4.2.2<br/></p>
<p>https://www.virtualbox.org/wiki/Changelog<br/><br/></p>
<p>PHP<br/></p>
<p>http://www.php.net/archive/2012.php#id2012-10-18-1<br/><br/></p>
<p>Ubuntu 12.10<br/></p>
<p>http://fridge.ubuntu.com/2012/10/18/ubuntu-12-10-quantal-quetzal-released/<br/><br/></p>
<p>OS X disables Java browser plugin OS X 10.6.8, 10.7 and 10.8<br/></p>
<p>http://www.h-online.com/security/news/item/Apple-updates-Java-for-older-Mac-OS-X-kills-browser-plugin-1732089.html<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>jboss-ec2-eap<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1376.html<br/><br/></p>
<p>Red Hat 6 &#8211; kernel<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1366.html<br/><br/></p>
<p>OpenStack Essex<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1378.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1379.html<br/><br/></p>
<p>java-1.7.0-openjdk<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1386.html<br/><br/></p>
<p>java-1.6.0-openjdk<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1385.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1384.html<br/><br/></p>
<p>java-1.6.0-sun<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1392.html<br/><br/></p>
<p>java-1.7.0-oracle<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1391.html<br/><br/></p>
<p>rhev-hypervisor6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1375.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>libgssglue<br/></p>
<p>http://www.ubuntu.com/usn/usn-1612-1/<br/><br/></p>
<p>python2.5 and 2.4<br/></p>
<p>http://www.ubuntu.com/usn/usn-1613-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1613-2/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>libexif<br/></p>
<p>http://www.debian.org/security/2012/dsa-2559<br/><br/></p>
<p>DNS vuln: CVE-2012-5166<br/></p>
<p>http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=690118<br/></p>
<p>http://security-tracker.debian.org/tracker/CVE-2012-5166<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/10/21/linux-security-weekly-022/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/10/lsw022-21oct12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 022 &#124; Hello and welcome to Linux Security Weekly for October 21, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 022 &#124; Hello and welcome to Linux Security Weekly for October 21, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Oracle quarterly patch http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html 14 MySQL CVEs that we will never see http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html#AppendixMSQL mod_security 2.7.0 https://twitter.com/ModSecurity/status/258374512851173378</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 021</title>
		<link>http://scottlinux.com/2012/10/14/linux-security-weekly-021/</link>
		<comments>http://scottlinux.com/2012/10/14/linux-security-weekly-021/#comments</comments>
		<pubDate>Mon, 15 Oct 2012 00:48:00 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3715</guid>
		<description><![CDATA[Linux Security Weekly &#124; 021 &#124; Hello and welcome to Linux Security Weekly for October 14, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News bind https://kb.isc.org/article/AA-00801 Tomcat 5.5.x branch End of Life http://www.mail-archive.com/announce@tomcat.apache.org/msg00088.html Firefox 16.0.1 http://www.mozilla.org/en-US/firefox/16.0.1/releasenotes/ http://www.mozilla.org/en-US/firefox/10.0.9/releasenotes/ Nessus 5.0.2 http://blog.tenablesecurity.com/2012/10/nessus-502-available.html]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for October 14, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/><br />
bind<br/></p>
<p>https://kb.isc.org/article/AA-00801<br/><br/></p>
<p>Tomcat 5.5.x branch End of Life<br/></p>
<p>http://www.mail-archive.com/announce@tomcat.apache.org/msg00088.html<br/><br/></p>
<p>Firefox 16.0.1<br/></p>
<p>http://www.mozilla.org/en-US/firefox/16.0.1/releasenotes/<br/></p>
<p>http://www.mozilla.org/en-US/firefox/10.0.9/releasenotes/<br/><br/></p>
<p>Nessus 5.0.2<br/></p>
<p>http://blog.tenablesecurity.com/2012/10/nessus-502-available.html<br/><br/></p>
<p>Nessus HTML5 interface now available<br/></p>
<p>http://blog.tenablesecurity.com/2012/10/nessus-html5-interface-beta.html<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>kernel 5.6 EUS<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1347.html<br/><br/></p>
<p>thunderbird<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1351.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1362.html<br/><br/></p>
<p>firefox<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1350.html<br/><br/></p>
<p>xulrunner<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1361.html<br/><br/></p>
<p>libvirt<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1359.html<br/><br/></p>
<p>bind<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1365.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1364.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1363.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>kernel<br/></p>
<p>http://www.ubuntu.com/usn/usn-1598-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1606-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1607-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1610-1/<br/><br/></p>
<p>firefox<br/></p>
<p>http://www.ubuntu.com/usn/usn-1600-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1608-1/<br/><br/></p>
<p>thunderbird<br/></p>
<p>http://www.ubuntu.com/usn/usn-1611-1/<br/><br/></p>
<p>bind<br/></p>
<p>http://www.ubuntu.com/usn/usn-1601-1/<br/><br/></p>
<p>ruby<br/></p>
<p>http://www.ubuntu.com/usn/usn-1602-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1603-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>icedove<br/></p>
<p>http://www.debian.org/security/2012/dsa-2556<br/><br/></p>
<p>bacula<br/></p>
<p>http://www.debian.org/security/2012/dsa-2558<br/><br/></p>
<p>hostapd<br/></p>
<p>http://www.debian.org/security/2012/dsa-2557<br/><br/></p>
<p>Debian DNS vuln: CVE-2012-5166<br/></p>
<p>http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=690118<br/></p>
<p>http://security-tracker.debian.org/tracker/CVE-2012-5166<br/><br/></p>
<hr/>
<b>Extras</b><br/><br/></p>
<p><b>XSS Explained</b><br/><br/></p>
<p>http://theinsider.deep-ice.com/texts/xss_exposed.txt<br/><br/></p>
<p>http://en.wikipedia.org/wiki/Cross-site_scripting<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/10/14/linux-security-weekly-021/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/10/lsw021-14oct12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 021 &#124; Hello and welcome to Linux Security Weekly for October 14, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 021 &#124; Hello and welcome to Linux Security Weekly for October 14, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News bind https://kb.isc.org/article/AA-00801 Tomcat 5.5.x branch End of Life http://www.mail-archive.com/announce@tomcat.apache.org/msg00088.html Firefox 16.0.1 http://www.mozilla.org/en-US/firefox/16.0.1/releasenotes/ http://www.mozilla.org/en-US/firefox/10.0.9/releasenotes/ Nessus 5.0.2 http://blog.tenablesecurity.com/2012/10/nessus-502-available.html</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 020</title>
		<link>http://scottlinux.com/2012/10/07/linux-security-weekly-020/</link>
		<comments>http://scottlinux.com/2012/10/07/linux-security-weekly-020/#comments</comments>
		<pubDate>Sun, 07 Oct 2012 19:19:54 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3696</guid>
		<description><![CDATA[Linux Security Weekly &#124; 020 &#124; Hello and welcome to Linux Security Weekly for October 7, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Wireshark 1.8.3 and 1.6.11 Released http://www.wireshark.org/news/20121002.html PostgreSQL Updates 2012-09-24 released http://www.postgresql.org/about/news/1416/ Red Hat 5.9 beta out]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for October 7, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>Wireshark 1.8.3 and 1.6.11 Released<br/></p>
<p>http://www.wireshark.org/news/20121002.html<br/><br/></p>
<p>PostgreSQL Updates 2012-09-24 released<br/></p>
<p>http://www.postgresql.org/about/news/1416/<br/><br/></p>
<p>Red Hat 5.9 beta out<br/></p>
<p>https://access.redhat.com/knowledge/docs/en-US/Red_Hat_Enterprise_Linux/5-Beta/html/5.9_Release_Notes/index.html<br/></p>
<p>https://access.redhat.com/knowledge/docs/en-US/Red_Hat_Enterprise_Linux/5-Beta/html-single/5.9_Technical_Notes/index.html<br/><br/></p>
<p>Over 50 universities with various websites compromised<br/></p>
<p>http://pastebin.com/AQWhu8Ek<br/><br/></p>
<p>Linux 3.6 released<br/></p>
<p>http://kernelnewbies.org/Linux_3.6<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>freeRADIUS<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1327.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1326.html<br/><br/></p>
<p>rhev-hypervisor<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1324.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1325.html<br/><br/></p>
<p>kernel &#8211; Red Hat 5<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1323.html<br/><br/></p>
<p>java-1.4.2-ibm-sap<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1332.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>eglibc, glibc vulnerabilities<br/></p>
<p>http://www.ubuntu.com/usn/usn-1589-1/<br/><br/></p>
<p>qemu<br/></p>
<p>http://www.ubuntu.com/usn/usn-1590-1/<br/><br/></p>
<p>python2.7<br/></p>
<p>http://www.ubuntu.com/usn/usn-1592-1/<br/><br/></p>
<p>libxslt<br/></p>
<p>http://www.ubuntu.com/usn/usn-1595-1/<br/><br/></p>
<p>python2.6<br/></p>
<p>http://www.ubuntu.com/usn/usn-1596-1/<br/><br/></p>
<p>kernel &#8211; EC2 10.04<br/></p>
<p>http://www.ubuntu.com/usn/usn-1597-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>libxslt<br/></p>
<p>http://www.debian.org/security/2012/dsa-2555<br/><br/></p>
<hr/>
<b>Extras</b><br/><br/></p>
<p>Recent attacks on US banks<br/><br/></p>
<p>Wells Fargo, U.S. Bancorp, PNC Financial Services Group, Citigroup, Bank of America and JPMorgan Chase<br/><br/></p>
<p>http://thehackernews.com/2012/10/cyber-attacks-on-six-major-american.html<br/><br/></p>
<p>http://blog.fireeye.com/research/2012/10/more-about-attacks-on-financial-industries-.html<br/><br/></p>
<p>http://www.ic3.gov/media/2012/FraudAlertFinancialInstitutionEmployeeCredentialsTargeted.pdf<br/><br/></p>
<p>http://blogs.cisco.com/security/csro-perspective-on-financial-ddos-attacks/<br/><br/></p>
<p>http://www.computerworld.com/s/article/9232016/Cyberattacks_on_banking_websites_subside_for_now<br/><br/></p>
<p>http://www.securityweek.com/recent-bank-cyber-attacks-originated-hacked-data-centers-not-large-botnet<br/><br/></p>
<p>http://www.nytimes.com/2012/10/01/business/cyberattacks-on-6-american-banks-frustrate-customers.html<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/10/07/linux-security-weekly-020/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/10/lsw020-07oct12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 020 &#124; Hello and welcome to Linux Security Weekly for October 7, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the [...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 020 &#124; Hello and welcome to Linux Security Weekly for October 7, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Wireshark 1.8.3 and 1.6.11 Released http://www.wireshark.org/news/20121002.html PostgreSQL Updates 2012-09-24 released http://www.postgresql.org/about/news/1416/ Red Hat 5.9 beta out</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 019</title>
		<link>http://scottlinux.com/2012/09/30/linux-security-weekly-019/</link>
		<comments>http://scottlinux.com/2012/09/30/linux-security-weekly-019/#comments</comments>
		<pubDate>Sun, 30 Sep 2012 20:45:19 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3676</guid>
		<description><![CDATA[Linux Security Weekly &#124; 019 &#124; Hello and welcome to Linux Security Weekly for September 30, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News phpMyAdmin backdoor http://sourceforge.net/blog/phpmyadmin-back-door/ http://www.phpmyadmin.net/home_page/security/PMASA-2012-5.php Google Chrome 22 http://googlechromereleases.blogspot.com/2012/09/stable-channel-update_25.html Slackware 14.0 http://slackware.com/announce/14.0.php python 3.3.0 http://www.python.org/download/releases/3.3.0/ Distro Updates]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for September 30, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>phpMyAdmin backdoor<br/></p>
<p>http://sourceforge.net/blog/phpmyadmin-back-door/<br/></p>
<p>http://www.phpmyadmin.net/home_page/security/PMASA-2012-5.php<br/><br/></p>
<p>Google Chrome 22<br/></p>
<p>http://googlechromereleases.blogspot.com/2012/09/stable-channel-update_25.html<br/><br/></p>
<p>Slackware 14.0<br/></p>
<p>http://slackware.com/announce/14.0.php<br/><br/></p>
<p>python 3.3.0<br/></p>
<p>http://www.python.org/download/releases/3.3.0/<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>kernel &#8211; Red Hat 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1304.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>kernel<br/></p>
<p>http://www.ubuntu.com/usn/usn-1579-1/<br/><br/></p>
<p>ghostscript<br/></p>
<p>http://www.ubuntu.com/usn/usn-1581-1/<br/><br/></p>
<p>ruby<br/></p>
<p>http://www.ubuntu.com/usn/usn-1583-1/<br/><br/></p>
<p>freeRADIUS<br/></p>
<p>http://www.ubuntu.com/usn/usn-1585-1/<br/><br/></p>
<p>libxml2<br/></p>
<p>http://www.ubuntu.com/usn/usn-1587-1/<br/><br/></p>
<p>Thunderbird<br/></p>
<p>http://www.ubuntu.com/usn/usn-1551-2/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>isc-dhcp<br/></p>
<p>http://www.debian.org/security/2012/dsa-2551<br/><br/></p>
<p>iceweasel<br/></p>
<p>http://www.debian.org/security/2012/dsa-2553<br/><br/></p>
<p>tiff<br/></p>
<p>http://www.debian.org/security/2012/dsa-2552<br/><br/></p>
<hr/>
<b>Extras</b><br/><br/></p>
<p>mozilla persona<br/><br/></p>
<p>https://login.persona.org/<br/><br/></p>
<p>http://identity.mozilla.com/post/32395255498/announcing-the-first-beta-release-of-persona<br/><br/></p>
<p>https://developer.mozilla.org/en-US/docs/Persona<br/><br/></p>
<p>http://crossword.thetimes.co.uk/<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/09/30/linux-security-weekly-019/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/09/lsw019-30sep12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 019 &#124; Hello and welcome to Linux Security Weekly for September 30, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for t[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 019 &#124; Hello and welcome to Linux Security Weekly for September 30, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News phpMyAdmin backdoor http://sourceforge.net/blog/phpmyadmin-back-door/ http://www.phpmyadmin.net/home_page/security/PMASA-2012-5.php Google Chrome 22 http://googlechromereleases.blogspot.com/2012/09/stable-channel-update_25.html Slackware 14.0 http://slackware.com/announce/14.0.php python 3.3.0 http://www.python.org/download/releases/3.3.0/ Distro Updates</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 018</title>
		<link>http://scottlinux.com/2012/09/23/linux-security-weekly-018/</link>
		<comments>http://scottlinux.com/2012/09/23/linux-security-weekly-018/#comments</comments>
		<pubDate>Sun, 23 Sep 2012 10:00:24 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3665</guid>
		<description><![CDATA[Linux Security Weekly &#124; 018 &#124; Hello and welcome to Linux Security Weekly for September 23, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Samba 4.0.0 rc1 https://download.samba.org/pub/samba/rc/WHATSNEW-4-0-0rc1.txt SSLyze 0.5 SSL scanner https://github.com/iSECPartners/sslyze prenus – pretty nessus http://labs.asteriskinfosec.com.au/tag/prenus/ Distro Updates]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for September 23, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>Samba 4.0.0 rc1<br/></p>
<p>https://download.samba.org/pub/samba/rc/WHATSNEW-4-0-0rc1.txt<br/><br/></p>
<p>SSLyze 0.5 SSL scanner<br/></p>
<p>https://github.com/iSECPartners/sslyze<br/><br/></p>
<p>prenus &#8211; pretty nessus<br/></p>
<p>http://labs.asteriskinfosec.com.au/tag/prenus/<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>openjpeg<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1283.html<br/><br/></p>
<p>java-1.7.0-ibm<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1289.html<br/><br/></p>
<p>Red Hat Enterprise MRG v2 <br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1278.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>php5<br/></p>
<p>http://www.ubuntu.com/usn/usn-1569-1/<br/><br/></p>
<p>gnupg<br/></p>
<p>http://www.ubuntu.com/usn/usn-1570-1/<br/><br/></p>
<p>dhcp3<br/></p>
<p>http://www.ubuntu.com/usn/usn-1570-1/<br/><br/></p>
<p>linux kernel &#8211; 10.04<br/></p>
<p>http://www.ubuntu.com/usn/usn-1572-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1573-1/<br/><br/></p>
<p>dbus<br/></p>
<p>http://www.ubuntu.com/usn/usn-1576-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>asterisk<br/></p>
<p>http://www.debian.org/security/2012/dsa-2550<br/><br/></p>
<hr/>
<b>Extras</b><br/><br/></p>
<p><b>Infosec and Security Blogs</b><br/><br/></p>
<p>http://www.reddit.com/r/netsec/comments/w2sh8/google_reader_security_rss_feeds_bundle/<br/><br/></p>
<p>https://www.google.com/reader/bundle/user%2F17384887029670727134%2Fbundle%2FSecurity<br/><br/></p>
<p>https://www.google.com/reader/bundle/user%2F17384887029670727134%2Fbundle%2FSNP<br/><br/></p>
<p>http://www.google.com/reader/bundle/user%2F18248679770830022606%2Fbundle%2FInfoSec<br/><br/></p>
<p>https://www.google.com/reader/bundle/user%2F03765539238807887305%2Fbundle%2FInformation%20Security<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/09/23/linux-security-weekly-018/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/09/lsw018-23sep12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 018 &#124; Hello and welcome to Linux Security Weekly for September 23, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for t[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 018 &#124; Hello and welcome to Linux Security Weekly for September 23, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News Samba 4.0.0 rc1 https://download.samba.org/pub/samba/rc/WHATSNEW-4-0-0rc1.txt SSLyze 0.5 SSL scanner https://github.com/iSECPartners/sslyze prenus – pretty nessus http://labs.asteriskinfosec.com.au/tag/prenus/ Distro Updates</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 017</title>
		<link>http://scottlinux.com/2012/09/16/linux-security-weekly-017/</link>
		<comments>http://scottlinux.com/2012/09/16/linux-security-weekly-017/#comments</comments>
		<pubDate>Sun, 16 Sep 2012 22:00:38 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3646</guid>
		<description><![CDATA[Linux Security Weekly &#124; 017 &#124; Hello and welcome to Linux Security Weekly for September 16, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News bind CVE-2012-4244 https://kb.isc.org/article/AA-00778/74 http://www.h-online.com/security/news/item/Manipulated-data-causes-BIND-DNS-servers-to-crash-1708087.html rdata field: http://www.zytrax.com/books/dns/ch15/#rdata BIND Vulnerability Matrix – list of bind vulns according]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for September 16, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>bind CVE-2012-4244<br/></p>
<p>https://kb.isc.org/article/AA-00778/74<br/></p>
<p>http://www.h-online.com/security/news/item/Manipulated-data-causes-BIND-DNS-servers-to-crash-1708087.html<br/></p>
<p>rdata field:<br/></p>
<p>http://www.zytrax.com/books/dns/ch15/#rdata<br/></p>
<p>BIND Vulnerability Matrix &#8211; list of bind vulns according to version of bind:<br/></p>
<p>http://www.isc.org/software/bind/security/matrix<br/><br/></p>
<p>PHP 5.4.7 and PHP 5.3.17 released<br/></p>
<p>http://www.php.net/index.php#id2012-09-13-1<br/><br/></p>
<p>VirtualBox 4.2.0<br/></p>
<p>https://www.virtualbox.org/wiki/Changelog<br/><br/></p>
<p>PostgreSQL 9.2 released<br/></p>
<p>http://www.postgresql.org/about/news/1415/<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>ghostscript red hat 5 and 6 CVE-2012-4405<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1256.html<br/><br/></p>
<p>libexif red hat 5 and 6 (7 CVEs)<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1255.html<br/><br/></p>
<p>quagga red hat 5 and 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1259.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1258.html<br/><br/></p>
<p>libxslt red hat 5 and 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1265.html<br/><br/></p>
<p>postgresql red hat 5 and 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1264.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1263.html<br/><br/></p>
<p>rhev-hypervisor5 red hat 5<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1262.html<br/><br/></p>
<p>dbus red hat 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1261.html<br/><br/></p>
<p>bind red hat 5 and 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1268.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1267.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1266.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>django<br/></p>
<p>http://www.ubuntu.com/usn/usn-1560-1/<br/><br/></p>
<p>xmlrpc-c<br/></p>
<p>http://www.ubuntu.com/usn/usn-1527-2/<br/><br/></p>
<p>firefox<br/></p>
<p>http://www.ubuntu.com/usn/usn-1548-2/<br/><br/></p>
<p>bind<br/></p>
<p>http://www.ubuntu.com/usn/usn-1566-1/<br/><br/></p>
<p>kernel<br/></p>
<p>http://www.ubuntu.com/usn/usn-1567-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1568-1/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>qemu-kvm<br/></p>
<p>http://www.debian.org/security/2012/dsa-2542<br/><br/></p>
<p>xen-qemu-dm-4.0<br/></p>
<p>http://www.debian.org/security/2012/dsa-2543<br/><br/></p>
<p>xen<br/></p>
<p>http://www.debian.org/security/2012/dsa-2544<br/><br/></p>
<p>qemu<br/></p>
<p>http://www.debian.org/security/2012/dsa-2545<br/><br/></p>
<p>freeradius<br/></p>
<p>http://www.debian.org/security/2012/dsa-2546<br/><br/></p>
<p>bind9<br/></p>
<p>http://www.debian.org/security/2012/dsa-2547<br/><br/></p>
<p>tor<br/></p>
<p>http://www.debian.org/security/2012/dsa-2548<br/><br/></p>
<hr/>
<b>Extras</b><br/></p>
<p>CRIME TLS vulnerability<br/><br/></p>
<p>https://community.qualys.com/blogs/securitylabs/2012/09/14/crime-information-leakage-attack-against-ssltls<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/09/16/linux-security-weekly-017/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/09/lsw017-16sep12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 017 &#124; Hello and welcome to Linux Security Weekly for September 16, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for t[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 017 &#124; Hello and welcome to Linux Security Weekly for September 16, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News bind CVE-2012-4244 https://kb.isc.org/article/AA-00778/74 http://www.h-online.com/security/news/item/Manipulated-data-causes-BIND-DNS-servers-to-crash-1708087.html rdata field: http://www.zytrax.com/books/dns/ch15/#rdata BIND Vulnerability Matrix – list of bind vulns according</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 016</title>
		<link>http://scottlinux.com/2012/09/09/linux-security-weekly-016/</link>
		<comments>http://scottlinux.com/2012/09/09/linux-security-weekly-016/#comments</comments>
		<pubDate>Sun, 09 Sep 2012 17:01:54 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3555</guid>
		<description><![CDATA[Linux Security Weekly &#124; 016 &#124; Hello and welcome to Linux Security Weekly for September 9, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News WordPress 3.4.2 http://wordpress.org/news/2012/09/wordpress-3-4-2/ OpenSuSE 12.2 http://news.opensuse.org/2012/09/05/opensuse-12-2-green-means-go/ Virtualbox 4.1.22 https://www.virtualbox.org/wiki/Changelog Firefox bumped to 15.0.1 https://www.mozilla.org/en-US/firefox/15.0.1/releasenotes/ https://bugzilla.mozilla.org/show_bug.cgi?id=787743 Distro]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for September 9, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>WordPress 3.4.2</p>
<p>http://wordpress.org/news/2012/09/wordpress-3-4-2/</p>
<p>OpenSuSE 12.2</p>
<p>http://news.opensuse.org/2012/09/05/opensuse-12-2-green-means-go/</p>
<p>Virtualbox 4.1.22</p>
<p>https://www.virtualbox.org/wiki/Changelog</p>
<p>Firefox bumped to 15.0.1</p>
<p>https://www.mozilla.org/en-US/firefox/15.0.1/releasenotes/</p>
<p>https://bugzilla.mozilla.org/show_bug.cgi?id=787743</p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>openjdk 1.6 update red hat 5 and 6</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1222.html</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1221.html</p>
<p>oracle java 1.7 red hat 6</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1225.html</p>
<p>ibm java 1.4.2, 1.5, and 1.6 red hat 5 and 6</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1243.html</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1245.html</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1238.html</p>
<p>xen red hat 5</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1236.html</p>
<p>kvm red hat 5</p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1235.html</p>
<p><br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>openjdk 6 ubuntu 10.04-12.04</p>
<p>http://www.ubuntu.com/usn/usn-1553-1/</p>
<p>kernel updates all around</p>
<p>11.10</p>
<p>http://www.ubuntu.com/usn/usn-1554-1/</p>
<p>10.04</p>
<p>http://www.ubuntu.com/usn/usn-1555-1/</p>
<p>10.04 EC2</p>
<p>http://www.ubuntu.com/usn/usn-1556-1/</p>
<p>11.04</p>
<p>http://www.ubuntu.com/usn/usn-1557-1/</p>
<p>11.10</p>
<p>http://www.ubuntu.com/usn/usn-1558-1/</p>
<p><br/><br/><br />
Debian<br/><br/></p>
<p>zabbix</p>
<p>http://www.debian.org/security/2012/dsa-2539</p>
<p>beaker</p>
<p>http://www.debian.org/security/2012/dsa-2541</p>
<hr/>
<b>Extras</b><br/></p>
<p>CRIME &#8211; the new TLS vulnerability similar to BEAST</p>
<p>http://thehackernews.com/2012/09/crime-new-ssltls-attack-for-hijacking.html</p>
<p>http://threatpost.com/en_us/blogs/new-attack-uses-ssltls-information-leak-hijack-https-sessions-090512</p>
<p>http://www.ekoparty.org/2012/thai-duong.php</p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/09/09/linux-security-weekly-016/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/09/lsw016-09sep12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 016 &#124; Hello and welcome to Linux Security Weekly for September 9, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for th[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 016 &#124; Hello and welcome to Linux Security Weekly for September 9, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News WordPress 3.4.2 http://wordpress.org/news/2012/09/wordpress-3-4-2/ OpenSuSE 12.2 http://news.opensuse.org/2012/09/05/opensuse-12-2-green-means-go/ Virtualbox 4.1.22 https://www.virtualbox.org/wiki/Changelog Firefox bumped to 15.0.1 https://www.mozilla.org/en-US/firefox/15.0.1/releasenotes/ https://bugzilla.mozilla.org/show_bug.cgi?id=787743 Distro</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 015</title>
		<link>http://scottlinux.com/2012/09/02/linux-security-weekly-015/</link>
		<comments>http://scottlinux.com/2012/09/02/linux-security-weekly-015/#comments</comments>
		<pubDate>Sun, 02 Sep 2012 10:00:07 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3516</guid>
		<description><![CDATA[Linux Security Weekly &#124; 015 &#124; Hello and welcome to Linux Security Weekly for September 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News OpenSSH http://www.openssh.com/txt/release-6.1 Google Chrome http://googlechromereleases.blogspot.com/2012/08/stable-channel-update_30.html Java http://www.oracle.com/technetwork/topics/security/alert-cve-2012-4681-1835715.html http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2012-August/020083.html Firefox and Thunderbird http://www.mozilla.org/security/known-vulnerabilities/firefox.html http://www.mozilla.org/security/known-vulnerabilities/firefoxESR.html#firefox10.0.7 OpenSuSE 12.2. this]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for September 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>OpenSSH<br/></p>
<p>http://www.openssh.com/txt/release-6.1<br/><br/></p>
<p>Google Chrome<br/></p>
<p>http://googlechromereleases.blogspot.com/2012/08/stable-channel-update_30.html<br/><br/></p>
<p>Java<br/></p>
<p>http://www.oracle.com/technetwork/topics/security/alert-cve-2012-4681-1835715.html<br/></p>
<p>http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2012-August/020083.html<br/><br/></p>
<p>Firefox and Thunderbird<br/></p>
<p>http://www.mozilla.org/security/known-vulnerabilities/firefox.html<br/></p>
<p>http://www.mozilla.org/security/known-vulnerabilities/firefoxESR.html#firefox10.0.7<br/><br/></p>
<p>OpenSuSE 12.2. this week?<br/></p>
<p>http://news.opensuse.org/2012/08/02/opensuse-12-2-rc2-ready-for-a-final-test/<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/></p>
<p>Firefox and Thunderbird ESR &#8211; Red Hat 5 and 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1211.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1210.html<br/><br/></p>
<p>glibc &#8211; Red Hat 5 and 6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1208.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1207.html<br/><br/></p>
<p>Ubuntu<br/><br/></p>
<p>Firefox and Thunderbird<br/></p>
<p>http://www.ubuntu.com/usn/usn-1548-1/<br/></p>
<p>http://www.ubuntu.com/usn/usn-1551-1/<br/><br/></p>
<p>iced-tea plugin<br/></p>
<p>http://www.ubuntu.com/usn/usn-1505-2/<br/><br/></p>
<p>Debian<br/><br/></p>
<p>request tracker component rtfm, XSS<br/></p>
<p>http://www.debian.org/security/2012/dsa-2535<br/><br/></p>
<p>otrs2, XSS<br/></p>
<p>http://www.debian.org/security/2012/dsa-2536<br/><br/></p>
<p>typo3<br/></p>
<p>http://www.debian.org/security/2012/dsa-2537<br/><br/></p>
<hr/>
<b>Extras</b><br/></p>
<p><b>Web Application Scanners</b><br/><br/></p>
<p>nikto<br/></p>
<p>http://cirt.net/nikto2<br/><br/></p>
<p>skipfish<br/></p>
<p>http://code.google.com/p/skipfish/<br/><br/></p>
<p>sqlmap<br/></p>
<p>http://sqlmap.org/<br/><br/></p>
<p>w3af<br/></p>
<p>http://w3af.sourceforge.net/<br/></p>
<p><br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/09/02/linux-security-weekly-015/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/09/lsw015-02sep12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 015 &#124; Hello and welcome to Linux Security Weekly for September 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for th[...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 015 &#124; Hello and welcome to Linux Security Weekly for September 2, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News OpenSSH http://www.openssh.com/txt/release-6.1 Google Chrome http://googlechromereleases.blogspot.com/2012/08/stable-channel-update_30.html Java http://www.oracle.com/technetwork/topics/security/alert-cve-2012-4681-1835715.html http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2012-August/020083.html Firefox and Thunderbird http://www.mozilla.org/security/known-vulnerabilities/firefox.html http://www.mozilla.org/security/known-vulnerabilities/firefoxESR.html#firefox10.0.7 OpenSuSE 12.2. this</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Linux Security Weekly &#124; 014</title>
		<link>http://scottlinux.com/2012/08/26/linux-security-weekly-014/</link>
		<comments>http://scottlinux.com/2012/08/26/linux-security-weekly-014/#comments</comments>
		<pubDate>Sun, 26 Aug 2012 14:12:50 +0000</pubDate>
		<dc:creator>Scott Miller</dc:creator>
				<category><![CDATA[podcast]]></category>
		<category><![CDATA[linux security weekly]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://scottlinux.com/?p=3496</guid>
		<description><![CDATA[Linux Security Weekly &#124; 014 &#124; Hello and welcome to Linux Security Weekly for August 26, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News MS-CHAPv2 cracked http://technet.microsoft.com/en-us/security/advisory/2743314 https://www.cloudcracker.com/blog/2012/07/29/cracking-ms-chap-v2/ https://github.com/moxie0/chapcrack http://revolutionwifi.blogspot.de/2012/07/is-wpa2-security-broken-due-to-defcon.html RuggedCom #fail http://www.computerworld.com.au/article/434312/ics-cert_warns_ssl_security_flaw_ruggedcom_industrial_networking_devices/ Distro Updates Red Hat katello http://rhn.redhat.com/errata/RHSA-2012-1187.html http://rhn.redhat.com/errata/RHSA-2012-1186.html]]></description>
				<content:encoded><![CDATA[<p><br/>
<div align="center">
<img src="/wp-content/uploads/2012/05/linux_security_podcast_300.png"></div>
<p><br/><br />
<b>Hello and welcome to Linux Security Weekly for August 26, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week.</b><br/><br/></p>
<p></p>
<hr/><br/></p>
<h1>Show Notes:</h1>
<p><br/><br />
<b>News</b><br/></p>
<p>MS-CHAPv2 cracked<br/></p>
<p>http://technet.microsoft.com/en-us/security/advisory/2743314<br/></p>
<p>https://www.cloudcracker.com/blog/2012/07/29/cracking-ms-chap-v2/<br/></p>
<p>https://github.com/moxie0/chapcrack<br/></p>
<p>http://revolutionwifi.blogspot.de/2012/07/is-wpa2-security-broken-due-to-defcon.html<br/><br/></p>
<p>RuggedCom #fail<br/></p>
<p>http://www.computerworld.com.au/article/434312/ics-cert_warns_ssl_security_flaw_ruggedcom_industrial_networking_devices/<br/><br/></p>
<hr/>
<b>Distro Updates</b><br/></p>
<p>Red Hat<br/><br/><br />
katello<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1187.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1186.html<br/><br/></p>
<p>rhev-hypervisor5<br/><br />
rhev-hypervisor6<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1185.html<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1200.html<br/><br/></p>
<p>libvirt<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1202.html<br/><br/></p>
<p>kernel &#8211; red hat 5 (low)<br/></p>
<p>http://rhn.redhat.com/errata/RHSA-2012-1174.html<br/><br/></p>
<p>Ubuntu<br/><br/><br />
postgresql<br/></p>
<p>http://www.ubuntu.com/usn/usn-1542-1/<br/><br/></p>
<p>imagemagick<br/></p>
<p>http://www.ubuntu.com/usn/usn-1544-1/<br/><br/></p>
<p>Debian<br/><br />
postgresql-8.4<br/></p>
<p>http://www.debian.org/security/2012/dsa-2534<br/><br/></p>
<hr/>
<b>Extras</b><br/></p>
<p>Adobe Reader and Linux<br/><br/></p>
<p>http://gynvael.coldwind.pl/?id=483<br/></p>
<p>http://www.adobe.com/support/security/bulletins/apsb12-16.html<br/></p>
<p>https://bugzilla.redhat.com/show_bug.cgi?id=848183<br/></p>
<p>http://blogs.adobe.com/asset/2011/06/notes-on-adobe-reader-and-acrobat-10-1.html<br/><br/></p>
]]></content:encoded>
			<wfw:commentRss>http://scottlinux.com/2012/08/26/linux-security-weekly-014/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://scottlinux.com/wp-content/uploads/2012/08/lsw014-26aug12.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Linux Security Weekly &#124; 014 &#124; Hello and welcome to Linux Security Weekly for August 26, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the [...]</itunes:subtitle>
		<itunes:summary>Linux Security Weekly &#124; 014 &#124; Hello and welcome to Linux Security Weekly for August 26, 2012. Linux Security Weekly is the audio podcast which covers current and important security vulnerabilities in Linux and open source software for the past week. Show Notes: News MS-CHAPv2 cracked http://technet.microsoft.com/en-us/security/advisory/2743314 https://www.cloudcracker.com/blog/2012/07/29/cracking-ms-chap-v2/ https://github.com/moxie0/chapcrack http://revolutionwifi.blogspot.de/2012/07/is-wpa2-security-broken-due-to-defcon.html RuggedCom #fail http://www.computerworld.com.au/article/434312/ics-cert_warns_ssl_security_flaw_ruggedcom_industrial_networking_devices/ Distro Updates Red Hat katello http://rhn.redhat.com/errata/RHSA-2012-1187.html http://rhn.redhat.com/errata/RHSA-2012-1186.html</itunes:summary>
		<itunes:keywords>podcast</itunes:keywords>
		<itunes:author>scottlinux.com</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
	</channel>
</rss>
