Skip to content
AppUnix

Tag: server

Instalando Graylog 2 no Debian 8

15/02/2017 by Euzebio Viana

Nesse post veremos a instalação do Graylog 2. Mas o que é isso?! De forma resumida ele centraliza e armazena os logs da sua infraestrutura, possibilitando uma análise aprofundada, alarmes, notificações, histórico, gráficos e etc… isso tudo facilitando a sua vida ;) Vamos começar a instalação, o ambiente utilizado foi:

1
2
3
4
5
SO: Debian GNU/Linux 8
Kernel: Linux debian 3.16.0-4-amd64
Graylog 2.2
MongoDB
Elasticsearh 2.x

Começamos adicionado repositório Backports …

Continue Reading

Como deletar emails de uma conta específica no EXIM

23/11/2016 by Shell

Olá pessoal, seguindo nossa série de dicas vamos postar neste instante uma dica simples para os sysadmins, mas que é muito útil quando precisamos limpar dados desnecessários na fila de emails (tornando outros emails lentos). Vamos lá, em primeira mão iremos simplificar o uso do comando com algumas informações:

1
/usr/sbin/exim -bpru | grep ‘root’ | awk {‘print $3′} | xargs /usr/sbin/exim -Mrm

Antes do pipe “|” percebemos …

Continue Reading

Use of uninitialized value in string ne at /usr/sbin/ddclient line 1973.

06/10/2011 by little_oak

Se você está usando DEBIAN-BASED (mind/debian/ubuntu) e toda vez que roda o comando ddclient ele apresenta erro SEUS PROBLEMAS “SE ACABARAM-SE”! Para sanar, como root faça o seguinte: rm -rf /var/cache/ddclient/ddclient.cache Depois rode o comando ddclient, a saída vai ser algo semelhante a: SUCCESS:  updating SEUHOST.ALGUMACOISAg: good: IP address set to IPDASUAINTERFACEWEB   Abraços galera

Continue Reading

Como instalar Apache 2, Mysql 5 e php 5 no Mac Os X LION 10.7.x (testado 10.7.1)

26/09/2011 by little_oak

Este artigo vai parecer muito com a instalação do apache, php e mysql sob mac os x snow leopard, porém existem algumas particularidades que precisam ser detalhadas. Antemão parte do artigo do mamp sob snow leopard será copiado, depois, iremos detalhar pontos MUITO importantes para que tudo funcione corretamente. Estamos testando em um hackintosh LION …

Continue Reading

Como instalar php apache mysql phpmyadmin no Centos 6

15/07/2011 by little_oak

Olá pessoal, como vocês sabem somos fanáticos pelo ambiente LAMP e agora iremos colocar para vocês um how to simples porém funcional de como instalar o apache, mysql, php e phpmyadmin na plataforma CentOs 6. Vamos começar deixando tudo atualizado e corrigido: [root@appunixlabs ~]# yum clean all && yum update -y Agora vamos instalar o …

Continue Reading

PHP 5.3.6 Buffer Overflow PoC (ROP) CVE-2011-1938

04/07/2011 by little_oak

/* ** Jonathan Salwan – @shell_storm ** http://shell-storm.org ** 2011-06-04 ** ** http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1938 ** ** Stack-based buffer overflow in the socket_connect function in ext/sockets/sockets.c ** in PHP 5.3.3 through 5.3.6 might allow context-dependent attackers to execute arbitrary ** code via a long pathname for a UNIX socket. */ echo “[+] PHP 5.3.6 Buffer Overflow PoC …

Continue Reading

Smallftpd 1.0.3 FTP Server Denial of Service Vulnerability

28/06/2011 by little_oak

Exploit para dos no SmallFTPD: # Exploit Title: smallFTPD Connection Saturation Remote Denial of Service # Date: June 27, 2011 # Author: Myo Soe <YGN Ethical Hacker Group – http://yehg.net/> # Software Link: http://smallftpd.sf.net # Version: 1.0.3-fix and earlier # Tested on: windows xp, seven, 2k3 ## # This file is part of the Metasploit …

Continue Reading

Lighttpd php5 mysql no Ubuntu 11.04

25/06/2011 by little_oak

Lighttpd é verdadeiramente uma bala no que tange a containers web. Muitas pessoas gostam dele (segundo a mídia até o Youtube já amou esse negócio), por isso estaremos indo direto ao assunto, vamos instalar essa bala no Ubuntu 11.04? Temos que ter poder de root para fazer o negócio rodar (use sudo su ou su …

Continue Reading

Ubuntu alert USN-1158-1 (curl) CURL vulnerabilidade

24/06/2011 by little_oak

Ubuntu alert USN-1158-1 (curl)

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
<pre>
<table>
<tbody>
<tr>
<td valign="top"><strong>From</strong>:</td>
<td></td>
<td valign="top">Steve Beattie &lt;sbeattie@ubuntu.com&gt;</td>
</tr>
<tr>
<td valign="top"><strong>To</strong>:</td>
<td></td>
<td valign="top">ubuntu-security-announce@lists.ubuntu.com</td>
</tr>
<tr>
<td valign="top"><strong>Subject</strong>:</td>
<td></td>
<td valign="top">[USN-1158-1] curl vulnerabilities</td>
</tr>
<tr>
<td valign="top"><strong>Date</strong>:</td>
<td></td>
<td valign="top">Thu, 23 Jun 2011 20:31:50 -0700</td>
</tr>
<tr>
<td valign="top"><strong>Message-ID</strong>:</td>
<td></td>
<td valign="top">&lt;20110624033150.GB3479@nxnw.org&gt;</td>
</tr>
<tr>
<td valign="top"><strong>Archive-link</strong>:</td>
<td></td>
<td valign="top"><a href="http://mid.gmane.org/%3C20110624033150.GB3479%40nxnw.org%3E">Article</a>, <a href="http://news.gmane.org/find-root.php?message_id=%3C20110624033150.GB3479%40nxnw.org%3E">Thread</a></td>
</tr>
</tbody>
</table>
 
==========================================================================
Ubuntu Security Notice USN-1158-1
June 24, 2011
 
curl vulnerabilities
==========================================================================
 
A security issue affects these releases of Ubuntu and its derivatives:
 
- Ubuntu 11.04
- Ubuntu 10.10
- Ubuntu 10.04 LTS
- Ubuntu 8.04 LTS
 
Summary:
 
Multiple vulnerabilities in curl.
 
Software Description:
- curl: HTTP, HTTPS, and FTP client and client libraries
 
Details:
 
Richard Silverman discovered that when doing GSSAPI authentication,
libcurl unconditionally performs credential delegation, handing the
server a copy of the client's security credential. (CVE-2011-2192)
 
Wesley Miaw discovered that when zlib is enabled, libcurl does not
properly restrict the amount of callback data sent to an application
that requests automatic decompression. This might allow an attacker to
cause a denial of service via an application crash or possibly execute
arbitrary code with the privilege of the application. This issue only
affected Ubuntu 8.04 LTS and Ubuntu 10.04 LTS. (CVE-2010-0734)
 
USN 818-1 fixed an issue with curl's handling of SSL certificates with
zero bytes in the Common Name. Due to a packaging error, the fix for
this issue was not being applied during the build. This issue only
affected Ubuntu 8.04 LTS. We apologize for the error. (CVE-2009-2417)
 
Original advisory details:
 
Scott Cantor discovered that curl did not correctly handle SSL
certificates with zero bytes in the Common Name. A remote attacker
could exploit this to perform a man in the middle attack to view
sensitive information or alter encrypted communications.
 
Update instructions:
 
The problem can be corrected by updating your system to the following
package versions:
 
Ubuntu 11.04:
  libcurl3                        7.21.3-1ubuntu1.2
  libcurl3-gnutls                 7.21.3-1ubuntu1.2
  libcurl3-nss                    7.21.3-1ubuntu1.2
 
Ubuntu 10.10:
  libcurl3                        7.21.0-1ubuntu1.1
  libcurl3-gnutls                 7.21.0-1ubuntu1.1
 
Ubuntu 10.04 LTS:
  libcurl3                        7.19.7-1ubuntu1.1
  libcurl3-gnutls                 7.19.7-1ubuntu1.1
 
Ubuntu 8.04 LTS:
  libcurl3                        7.18.0-1ubuntu2.3
  libcurl3-gnutls                 7.18.0-1ubuntu2.3
 
After a standard system update you need to restart any applications
that make use of libcurl to make all the necessary changes.
 
References:
  CVE-2009-2417, CVE-2010-0734, CVE-2011-2192
 
Package Information:
  <a href="https://launchpad.net/ubuntu/+source/curl/7.21.3-1ubuntu1.2">https://launchpad.net/ubuntu/+source/curl/7.21.3-1ubuntu1.2</a>
  <a href="https://launchpad.net/ubuntu/+source/curl/7.21.0-1ubuntu1.1">https://launchpad.net/ubuntu/+source/curl/7.21.0-1ubuntu1.1</a>
  <a href="https://launchpad.net/ubuntu/+source/curl/7.19.7-1ubuntu1.1">https://launchpad.net/ubuntu/+source/curl/7.19.7-1ubuntu1.1</a>
  <a href="https://launchpad.net/ubuntu/+source/curl/7.18.0-1ubuntu2.3">https://launchpad.net/ubuntu/+source/curl/7.18.0-1ubuntu2.3</a>
 
--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at:
<a href="https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce">https://lists.ubuntu.com/mailman/listinfo/ubuntu-security...</a>
 
 
Fonte: <a href="http://lwn.net/Articles/449147/">http://lwn.net/Articles/449147/</a>

Continue Reading

Windows 2008 server exploit DOS

26/05/2011 by little_oak

#!/usr/bin/python ############################################################################ ## ## Title: Microsoft Windows Vista/Server 2008 “nsiproxy.sys” Local Kernel DoS Exploit ## Author: Lufeng Li of Neusoft Corporation ## Vendor: www.microsoft.com ## Vulnerable: Windows Vista/Server 2008 ## ############################################################################ from ctypes import * kernel32 = windll.kernel32 Psapi = windll.Psapi if __name__ == ‘__main__’: GENERIC_READ = 0x80000000 GENERIC_WRITE = 0x40000000 OPEN_EXISTING = 0x3 CREATE_ALWAYS …

Continue Reading

Navegação por posts

  • 1
  • 2
  • Next

Pesquisa

Categorias

  • Blog
  • cPanel
  • How Tos
  • Linux
  • Mac Os
  • MySQL
  • Wordpress

#Apoiadores

Patrocinador

Registre-se e ganhe $25



© 2021 AppUnix | Protegido Por MxGuardDoG