CentOS Icon CentOS Logo
CentOS Text
   
  
www.centos.org Forum Index
   CentOS 6 - Security Support
   Workstations remotely vulnerable, servers exposed to DOS attacks

 

  Bottom    Previous Topic    Next Topic
  •  Rate Thread
      Rate this Thread
      Excellent
      Good
      Average
      Bad
      Terrible
Poster Thread
  •  lightdot
      lightdot
Workstations remotely vulnerable, servers exposed to DOS attacks
#1
Jr Board Member
Joined: 2011/3/29
From Slovenia
Posts: 43
I don't see any special warnings on the CentOS web page or in the forum so I thought I'd post this here for the sake of the less experienced users.

I hope everybody is aware that CentOS 6.0 is not receiving any security updates. The situation is ongoing ever since RHEL 6.1 came out, May 19, 2011.

This ie. leaves all C6 workstations which use stock Firefox 3.6.x open to several remote vulnerabilities, leading to Firefox crash or arbitrary code execution. Upstream security advisory here, published 2011-06-21 and here, published 2011-08-16.

And as of yestarday, all C6 servers running Apache aren't getting a crucial security fix. Latest Apache available in C6 is vulnerable to a DOS attack, an attack tool is circulating in the wild. Upstream security advisory here, published 2011-08-31.

Just a head's up to everybody.

In my opinion, CentOS 6.0 without custom updates should not be used in any kind of live environment at the moment. Act now if you haven't already.
Posted on: 2011/9/1 20:59
Create PDF from Post Print
Top
Subject Poster Date
     Re: Workstations remotely vulnerable, servers exposed to DOS attacks AlanBartlett 2011/9/2 17:11
       Re: Workstations remotely vulnerable, servers exposed to DOS attacks TrevorH 2011/9/2 18:21
         Re: Workstations remotely vulnerable, servers exposed to DOS attacks toracat 2011/9/2 19:02
     Re: Workstations remotely vulnerable, servers exposed to DOS attacks lightdot 2011/9/3 3:55
       Re: Workstations remotely vulnerable, servers exposed to DOS attacks toracat 2011/9/3 13:36
         Re: Workstations remotely vulnerable, servers exposed to DOS attacks vonskippy 2011/9/4 3:32
           Re: Workstations remotely vulnerable, servers exposed to DOS attacks WhatsHisName 2011/9/4 17:49
         Re: Workstations remotely vulnerable, servers exposed to DOS attacks h_fat 2011/9/4 6:01
           Re: Workstations remotely vulnerable, servers exposed to DOS attacks pza81 2011/9/19 16:56
             Re: Workstations remotely vulnerable, servers exposed to DOS attacks pza81 2011/9/27 3:37
               Re: Workstations remotely vulnerable, servers exposed to DOS attacks svillano 2011/12/12 2:34
                 Re: Workstations remotely vulnerable, servers exposed to DOS attacks svillano 2011/12/12 2:52
                   Re: Workstations remotely vulnerable, servers exposed to DOS attacks TrevorH 2011/12/12 9:16
                     Re: Workstations remotely vulnerable, servers exposed to DOS attacks r_hartman 2011/12/16 9:07
                       Re: Workstations remotely vulnerable, servers exposed to DOS attacks AlanBartlett 2011/12/16 23:48
 Top   Previous Topic   Next Topic

 


 You cannot start a new topic.
 You cannot view topic.
 You cannot reply to posts.
 You cannot edit your posts.
 You cannot delete your posts.
 You cannot add new polls.
 You cannot vote in polls.
 You cannot attach files to posts.
 You cannot post without approval.




"Linux" is a registered trademark of Linus Torvalds. | All other trademarks are property of their respective owners. | All other content is Copyright @ 2004-2009 by the CentOS Project or "each individual contributor (forums, comments, etc.) unless otherwise assigned".| Theme based on a theme by 7dana.com