Thu Oct 29 12:09:45 2020
EVENTS
 FREE
SOFTWARE
INSTITUTE

POLITICS
JOBS
MEMBERS'
CORNER

MAILING
LIST

NYLXS Mailing Lists and Archives
NYLXS Members have a lot to say and share but we don't keep many secrets. Join the Hangout Mailing List and say your peice.

DATE 2019-03-01

HANGOUT

2020-10-29 | 2020-09-29 | 2020-08-29 | 2020-07-29 | 2020-06-29 | 2020-05-29 | 2020-04-29 | 2020-03-29 | 2020-02-29 | 2020-01-29 | 2019-12-29 | 2019-11-29 | 2019-10-29 | 2019-09-29 | 2019-08-29 | 2019-07-29 | 2019-06-29 | 2019-05-29 | 2019-04-29 | 2019-03-29 | 2019-02-28 | 2019-01-28 | 2018-12-28 | 2018-11-28 | 2018-10-28 | 2018-09-28 | 2018-08-28 | 2018-07-28 | 2018-06-28 | 2018-05-28 | 2018-04-28 | 2018-03-28 | 2018-02-28 | 2018-01-28 | 2017-12-28 | 2017-11-28 | 2017-10-28 | 2017-09-28 | 2017-08-28 | 2017-07-28 | 2017-06-28 | 2017-05-28 | 2017-04-28 | 2017-03-28 | 2017-02-28 | 2017-01-28 | 2016-12-28 | 2016-11-28 | 2016-10-28 | 2016-09-28 | 2016-08-28 | 2016-07-28 | 2016-06-28 | 2016-05-28 | 2016-04-28 | 2016-03-28 | 2016-02-28 | 2016-01-28 | 2015-12-28 | 2015-11-28 | 2015-10-28 | 2015-09-28 | 2015-08-28 | 2015-07-28 | 2015-06-28 | 2015-05-28 | 2015-04-28 | 2015-03-28 | 2015-02-28 | 2015-01-28 | 2014-12-28 | 2014-11-28 | 2014-10-28 | 2014-09-28 | 2014-08-28 | 2014-07-28 | 2014-06-28 | 2014-05-28 | 2014-04-28 | 2014-03-28 | 2014-02-28 | 2014-01-28 | 2013-12-28 | 2013-11-28 | 2013-10-28 | 2013-09-28 | 2013-08-28 | 2013-07-28 | 2013-06-28 | 2013-05-28 | 2013-04-28 | 2013-03-28 | 2013-02-28 | 2013-01-28 | 2012-12-28 | 2012-11-28 | 2012-10-28 | 2012-09-28 | 2012-08-28 | 2012-07-28 | 2012-06-28 | 2012-05-28 | 2012-04-28 | 2012-03-28 | 2012-02-28 | 2012-01-28 | 2011-12-28 | 2011-11-28 | 2011-10-28 | 2011-09-28 | 2011-08-28 | 2011-07-28 | 2011-06-28 | 2011-05-28 | 2011-04-28 | 2011-03-28 | 2011-02-28 | 2011-01-28 | 2010-12-28 | 2010-11-28 | 2010-10-28 | 2010-09-28 | 2010-08-28 | 2010-07-28 | 2010-06-28 | 2010-05-28 | 2010-04-28 | 2010-03-28 | 2010-02-28 | 2010-01-28 | 2009-12-28 | 2009-11-28 | 2009-10-28 | 2009-09-28 | 2009-08-28 | 2009-07-28 | 2009-06-28 | 2009-05-28 | 2009-04-28 | 2009-03-28 | 2009-02-28 | 2009-01-28 | 2008-12-28 | 2008-11-28 | 2008-10-28 | 2008-09-28 | 2008-08-28 | 2008-07-28 | 2008-06-28 | 2008-05-28 | 2008-04-28 | 2008-03-28 | 2008-02-28 | 2008-01-28 | 2007-12-28 | 2007-11-28 | 2007-10-28 | 2007-09-28 | 2007-08-28 | 2007-07-28 | 2007-06-28 | 2007-05-28 | 2007-04-28 | 2007-03-28 | 2007-02-28 | 2007-01-28 | 2006-12-28 | 2006-11-28 | 2006-10-28 | 2006-09-28 | 2006-08-28 | 2006-07-28 | 2006-06-28 | 2006-05-28 | 2006-04-28 | 2006-03-28 | 2006-02-28 | 2006-01-28 | 2005-12-28 | 2005-11-28 | 2005-10-28 | 2005-09-28 | 2005-08-28 | 2005-07-28 | 2005-06-28 | 2005-05-28 | 2005-04-28 | 2005-03-28 | 2005-02-28 | 2005-01-28 | 2004-12-28 | 2004-11-28 | 2004-10-28 | 2004-09-28 | 2004-08-28 | 2004-07-28 | 2004-06-28 | 2004-05-28 | 2004-04-28 | 2004-03-28 | 2004-02-28 | 2004-01-28 | 2003-12-28 | 2003-11-28 | 2003-10-28 | 2003-09-28 | 2003-08-28 | 2003-07-28 | 2003-06-28 | 2003-05-28 | 2003-04-28 | 2003-03-28 | 2003-02-28 | 2003-01-28 | 2002-12-28 | 2002-11-28 | 2002-10-28 | 2002-09-28 | 2002-08-28 | 2002-07-28 | 2002-06-28 | 2002-05-28 | 2002-04-28 | 2002-03-28 | 2002-02-28 | 2002-01-28 | 2001-12-28 | 2001-11-28 | 2001-10-28 | 2001-09-28 | 2001-08-28 | 2001-07-28 | 2001-06-28 | 2001-05-28 | 2001-04-28 | 2001-03-28 | 2001-02-28 | 2001-01-28 | 2000-12-28 | 2000-11-28 | 2000-10-28 | 2000-09-28 | 2000-08-28 | 2000-07-28 | 2000-06-28 | 2000-05-28 | 2000-04-28 | 2000-03-28 | 2000-02-28 | 2000-01-28 | 1999-12-28

Key: Value:

Key: Value:

MESSAGE
DATE 2019-03-03
FROM Ruben Safir
SUBJECT Subject: [Hangout - NYLXS] glibc vulnerabilty
From hangout-bounces-at-nylxs.com Sun Mar 3 00:04:02 2019
Return-Path:
X-Original-To: archive-at-mrbrklyn.com
Delivered-To: archive-at-mrbrklyn.com
Received: from www2.mrbrklyn.com (www2.mrbrklyn.com [96.57.23.82])
by mrbrklyn.com (Postfix) with ESMTP id 61B5016113A;
Sun, 3 Mar 2019 00:03:58 -0500 (EST)
X-Original-To: hangout-at-nylxs.com
Delivered-To: hangout-at-nylxs.com
Received: from mail-qt1-f176.google.com (mail-qt1-f176.google.com
[209.85.160.176]) by mrbrklyn.com (Postfix) with ESMTP id 85069161132
for ; Sun, 3 Mar 2019 00:03:49 -0500 (EST)
Received: by mail-qt1-f176.google.com with SMTP id p25so1913620qtb.3
for ; Sat, 02 Mar 2019 21:03:49 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=my.liu.edu; s=google;
h=to:from:subject:message-id:date:user-agent:mime-version
:content-language:content-transfer-encoding;
bh=cOWHXVQQ+7Gm4b14o3QcZqdf/YrIMLxb2jKOswjKd2Y=;
b=YysOOGbqoN0yUkQl3FRKJDHAOXzgvo0p5yPQuCFqrHTSgr9cloV3GcPlarjYSR7DWs
6ttujljJzVTIuu2FmSC+fI/Nq23rkkBnzi0es24LKyjX7hgJ21geqGFcIUwPwc7YwTPl
v+mHCB7sS7qxTtgeBmYNlomulEpyZwVjV1UFA=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=1e100.net; s=20161025;
h=x-gm-message-state:to:from:subject:message-id:date:user-agent
:mime-version:content-language:content-transfer-encoding;
bh=cOWHXVQQ+7Gm4b14o3QcZqdf/YrIMLxb2jKOswjKd2Y=;
b=uTil0bIkmgJL6oAkeg4et5KGXFWdYZUfXc++yaElbBTeL3jt/PObqzDR5FUrZLTkQP
NFMkyUUaprdHYzMU2qO5+PWEgaJqUBey+8a4+rG0zKpQx6Fy4nsja8hNKRNHQzdHXYtb
yC7tvWSJS/mW2LgAKjB0MU2w9WBUh0qsQ9KtRojXNqagSFzjmDwrYk2Yz9WYBliAf1Zz
XzXwFIf58Vzr3ogVZBE6Aykcmhe3G5ZAypQ5qnKPMgb6Z3MN9vKm5zSGYk6MxaD3vnsk
Bvn62FaDeBjSMruqFYjaoTUVqN/B/qr+zJ6u6GlQ+b9HnKTUcwyztwB64NFM57frIU6i
JZkQ==
X-Gm-Message-State: APjAAAWiFdeH2RbP/zyyt5aV72tJdwFPhciBFr4sGB0VrYemIs2KJuz1
l4jh7qD2wxteA5kWYvZ/AMgPykFFCDo=
X-Google-Smtp-Source: APXvYqyQGITv1ef7v1z8/XHnGH9aXif1saz0OF0LMRs0j9TrSxIjGXEpbDufLz+ZBs3rS2S6nXGNmQ==
X-Received: by 2002:ac8:2246:: with SMTP id p6mr9989781qtp.66.1551589425497;
Sat, 02 Mar 2019 21:03:45 -0800 (PST)
Received: from [10.0.0.62] (www3.mrbrklyn.com. [96.57.23.83])
by smtp.googlemail.com with ESMTPSA id p127sm1576704qke.97.2019.03.02.21.03.43
for
(version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128);
Sat, 02 Mar 2019 21:03:44 -0800 (PST)
To: Hangout
From: Ruben Safir
Message-ID: <005668c2-aa67-d983-45b0-3afe427ff82c-at-my.liu.edu>
Date: Sun, 3 Mar 2019 00:02:29 -0500
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101
Thunderbird/60.5.1
MIME-Version: 1.0
Content-Language: en-US
Subject: [Hangout - NYLXS] glibc vulnerabilty
X-BeenThere: hangout-at-nylxs.com
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: NYLXS Tech Talk and Politics
List-Unsubscribe: ,

List-Post:
List-Help:
List-Subscribe: ,

Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: hangout-bounces-at-nylxs.com
Sender: "Hangout"

CVE-2009-5155 Detail
Current Description

In the GNU C Library (aka glibc or libc6) before 2.28, parse_reg_exp in
posix/regcomp.c misparses alternatives, which allows attackers to cause
a denial of service (assertion failure and application exit) or trigger
an incorrect result by attempting a regular-expression match.

Source: MITRE
Description Last Modified: 02/25/2019
View Analysis Description
Impact
CVSS v3.0 Severity and Metrics:

Base Score: 7.5 HIGH
Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H (V3 legend)
Impact Score: 3.6
Exploitability Score: 3.9

Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope (S): Unchanged
Confidentiality (C): None
Integrity (I): None
Availability (A): High
CVSS v2.0 Severity and Metrics:

Base Score: 5.0 MEDIUM
Vector: (AV:N/AC:L/Au:N/C:N/I:N/A:P) (V2 legend)
Impact Subscore: 2.9
Exploitability Subscore: 10.0

Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (AU): None
Confidentiality (C): None
Integrity (I): None
Availability (A): Partial
Additional Information:
Allows disruption of service
References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have
provided these links to other web sites because they may have
information that would be of interest to you. No inferences should be
drawn on account of other sites being referenced, or not, from this
page. There may be other web sites that are more appropriate for your
purpose. NIST does not necessarily endorse the views expressed, or
concur with the facts presented on these sites. Further, NIST does not
endorse any commercial products that may be mentioned on these sites.
Please address comments about this page to nvd-at-nist.gov.
--
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013
_______________________________________________
Hangout mailing list
Hangout-at-nylxs.com
http://lists.mrbrklyn.com/mailman/listinfo/hangout

  1. 2019-03-01 From: "American Museum of Natural History" <learn-at-amnh.org> Subject: [Hangout - NYLXS] There are Still a Couple Weeks Left to Register
  2. 2019-03-01 From: "Dana Morgenstein, FSF" <info-at-fsf.org> Subject: [Hangout - NYLXS] New LibrePlanet 2019 tees: explore new frontiers
  3. 2019-03-02 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] C++ and Linux $300,000
  4. 2019-03-03 Ruben Safir <ruben.safir-at-my.liu.edu> Subject: [Hangout - NYLXS] glibc vulnerabilty
  5. 2019-03-03 Ruben Safir <ruben.safir-at-my.liu.edu> Subject: [Hangout - NYLXS] Fwd: New York Artificial Intelligence In
  6. 2019-03-03 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] Anyone ever see this?
  7. 2019-03-03 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] nixCraft Linux / UNIX Newsletter
  8. 2019-03-04 Gabor Szabo <gabor-at-szabgab.com> Subject: [Hangout - NYLXS] [Perlweekly] #397 - GSOC - TPF is participating
  9. 2019-03-04 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] hakin9.org magazines
  10. 2019-03-03 Jacob Salomon <jakesalomon-at-yahoo.com> Re: [Hangout - NYLXS] March ny.pm social meeting
  11. 2019-03-03 Jacob Salomon <jakesalomon-at-yahoo.com> Re: [Hangout - NYLXS] March ny.pm social meeting
  12. 2019-03-01 From: "Free Software Foundation" <info-at-fsf.org> Subject: [Hangout - NYLXS] Free Software Supporter Issue 131, March 2019
  13. 2019-03-04 Gabor Szabo <gabor-at-szabgab.com> Subject: [Hangout - NYLXS] [Perlweekly] #397 - GSOC - TPF is participating
  14. 2019-03-03 James E Keenan <jkeenan-at-pobox.com> Re: [Hangout - NYLXS] March ny.pm social meeting
  15. 2019-03-02 James E Keenan <jkeenan-at-pobox.com> Subject: [Hangout - NYLXS] March ny.pm social meeting
  16. 2019-03-06 Bjorn Helgaas <bhelgaas-at-google.com> Re: [Hangout - NYLXS] [RFC] LKML Archive in Maildir Format
  17. 2019-03-06 From: "American Museum of Natural History" <learn-at-amnh.org> Subject: [Hangout - NYLXS] Last Call for Spring Session 2!
  18. 2019-03-06 From: "Speaker Corey Johnson" <SpeakerJohnson-at-council.nyc.gov> Subject: [Hangout - NYLXS] =?utf-8?q?Municipal_Control_of_Our_Mass_Transit?=
  19. 2019-03-08 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] EMBS News and Events
  20. 2019-03-07 From: "Free Software Foundation" <info-at-fsf.org> Subject: [Hangout - NYLXS] What talks will you attend at LibrePlanet 2019?
  21. 2019-03-12 Ruben Safir <ruben.safir-at-my.liu.edu> Subject: [Hangout - NYLXS] Fwd: NYLUG Open Hacker Hours Tomorrow
  22. 2019-03-12 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] Fwd: [dinosaur] Course Using Geiger, Phytools,
  23. 2019-03-11 Gabor Szabo <gabor-at-szabgab.com> Subject: [Hangout - NYLXS] [Perlweekly] #398 - London Hack Day
  24. 2019-03-12 From: "IEEE The Institute Alert" <reply-at-media.ieee.org> Subject: [Hangout - NYLXS] Changes are Coming to The Institute
  25. 2019-03-13 From: "IEEE Spectrum University Spotlight" <reply-at-media.ieee.org> Subject: [Hangout - NYLXS] Latest in Continuing Education Programs, Degrees,
  26. 2019-03-13 Ruben Safir <mrbrklyn-at-panix.com> Subject: [Hangout - NYLXS] Fwd: Latest in Continuing Education Programs,
  27. 2019-03-14 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] Hendrix
  28. 2019-03-14 From: "IEEE Spectrum Tech Alert" <reply-at-media.ieee.org> Subject: [Hangout - NYLXS] =?utf-8?q?What_Programming_Languages_Engineers_?=
  29. 2019-03-14 From: "American Museum of Natural History" <learn-at-amnh.org> Subject: [Hangout - NYLXS] Take a Look at the Seminars on Science Spring
  30. 2019-03-16 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] Just feel like sharing this
  31. 2019-03-16 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] Meet the Press
  32. 2019-03-19 From: "Free Software Foundation" <info-at-fsf.org> Subject: [Hangout - NYLXS] RMS article: "Install fests: What to do about the
  33. 2019-03-18 From: "Free Software Foundation" <info-at-fsf.org> Subject: [Hangout - NYLXS] Your guide to LibrePlanet 2019, March 23-24!
  34. 2019-03-19 From: "School of Professional Studies" <bounces-at-liu.edu> Subject: [Hangout - NYLXS] Theodore Roosevelt Lectures Begin March 29
  35. 2019-03-18 GNOME Discourse <noreply-at-gnome.org> Subject: [Hangout - NYLXS] Neil McGovern (nmcgovern) invited you to join
  36. 2019-03-18 Gabor Szabo <gabor-at-szabgab.com> Subject: [Hangout - NYLXS] [Perlweekly] #399 - Some digging in history
  37. 2019-03-18 Gabor Szabo <gabor-at-szabgab.com> Subject: [Hangout - NYLXS] [Perlweekly] #399 - Some digging in history
  38. 2019-03-21 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] Third most importamt issue to be under Trump
  39. 2019-03-22 From: "Free Software Foundation" <info-at-fsf.org> Subject: [Hangout - NYLXS] LibrePlanet starts tomorrow! Here's how you can
  40. 2019-03-21 From: "American Museum of Natural History" <learn-at-amnh.org> Subject: [Hangout - NYLXS] It's Never Too Early to Sign Up for a Summer
  41. 2019-03-21 From: "Rijksmuseum" <rijksstudio-at-e.rijksmuseum.nl> Subject: [Hangout - NYLXS] Springtime in Rijksstudio
  42. 2019-03-24 Ruben Safir <ruben-at-mrbrklyn.com> Subject: [Hangout - NYLXS] Movies Night - the Mick!
  43. 2019-03-26 From: "IEEE The Institute Alert" <reply-at-media.ieee.org> Subject: [Hangout - NYLXS] Rufus Chavez Shares His Experiences Working on
  44. 2019-03-24 IEEE Engineering in Medicine and Biology Society <noreply-at-embs.org> Subject: [Hangout - NYLXS] Reminder: EMBS News and Events
  45. 2019-03-25 From: "Pat Schloss" <pdschloss-at-gmail.com> Subject: [Hangout - NYLXS] [mothur] Upcoming R and mothur workshops
  46. 2019-03-25 Gabor Szabo <gabor-at-szabgab.com> Subject: [Hangout - NYLXS] [Perlweekly] #400 - 400th Edition of Perl Weekly
  47. 2019-03-28 Ruben Safir <ruben.safir-at-my.liu.edu> Subject: [Hangout - NYLXS] Fwd: Pay what you want for the Humble Book
  48. 2019-03-28 From: "American Museum of Natural History" <learn-at-amnh.org> Subject: [Hangout - NYLXS] Sign Up for a Summer Science Course Today!

NYLXS are Do'ers and the first step of Doing is Joining! Join NYLXS and make a difference in your community today!