news
Members-
Content count
80899 -
Joined
-
Last visited
Never -
Days Won
18
Everything posted by news
-
miniSync - Car Charger Bundle for ATT Tilt/ HTC Tytn II Reviewed @ DragonSteelMods
news posted a topic in Upcoming News
Hi, It's Kristofer from DragonSteelMods, and I have a new review today that I think your readers might find interesting. Title: miniSync - Car Charger Bundle for ATT Tilt/ HTC Tytn II Reviewed ( -at -) DragonSteelMods Review Link: http://www.dragonsteelmods.com/index.php?option=com_content&task=view&id=7292&Itemid=38 Review Snipit: "In my ongoing set of reviews of accessories for the Tilt, the next up would be the miniSync - Car Charger Bundle from Boxwave for ATT Tilt/ HTC Tytn II and it's more than just a car charger it's also a syncing cable as well to sync your phone to your PC. This bundle is inexpensive, coming it at under thirty dollars, it includes two retractable cables, one specifically for syncing/charging to/from your PC and one just for charging your phone while you're in your car with the included high power car adapter. All three parts are very well made so they seem as they will last for quite a while, in my time with them I've found them to be very useful and very handy. " Review Picture(200x150): http://www.dragonsteelmods.com/Images/reviews2/boxwave-minisync/sync2.jpg Main site link: http://www.dragonsteelmods.com A post in your news would be greatly appreciated. Any and all news sent to me will be posted! If you would like to be added to our 'News Feeds' page please feel free to send me your http link to the feed and I will gladly add it ASAP. If you'd like to swap links for affiliation, I'd be happy to, just drop me a message... -
Dear Webmasters and Newsposters, BurnOutPC.com has just posted their review on the Be Quiet! Dark Power Pro "First Class" 650Watt powersupply. Quote "Be Quiet! recently revamped their range of power supplies with the addition of the updated Dark Power Pro series. They now call this power supply their "First Class" edition. The efficiency rate according to Listan, has gone up to 88% (85% on average load) and it comes in four different wattages. From 450watts up to 1000watts, we'll be taking a look at the 650watt version". Direct Link - http://www.burnoutpc.com/modules/smartsection/item.php?itemid=294<http://www.burnoutpc.com/modules/smartsection/item.php?itemid=291> Image Link - http://www.burnoutpc.com/images/reviews/darkpowerpro650/PICT7391.JPG<http://www.burnoutpc.com/images/reviews/clearpuk/PICT7581.JPG> I would highly appreciate it if you could mention this review in your upcoming news post. Thanks a lot, Marien Klootwijk BurnOutPC.com -----------------------------
-
Mac Pilot 3 Released - Over 600 Features to Customize Mac OS X - Published on 04/27/08 Koingo Software has officially unveiled Mac Pilot 3. This latest incarnation of their tinker tool for Mac OS X sports approximately two hundred new features and enhancements. The total number of features in Mac Pilot now exceeds six-hundred! Completely customize the Dock, Finder, Safari, and numerous other Apple and third party applications with little more than a mouse click. Kamloops, British Columbia - Koingo Software has officially unveiled Mac Pilot 3. This latest incarnation of their tinker tool for Mac OS X sports approximately two hundred new features and enhancements. The total number of features in Mac Pilot now exceeds six-hundred! Completely customize the Dock, Finder, Safari, and numerous other Apple and third party applications with little more than a mouse click. Mac Pilot has always come with a broad range of system tools, and other advanced settings as well. Dig deeply into the configuration of the Mac OS X file server with over fifty customizable options, fine tune the network card for broadband, erase logs and caches, change disk settings, disable Spotlight, schedule power events, view a character map for fonts, and more. Mac Pilot 3 is fully compatible with Mac OS X 10.5 Leopard, as well as Mac OS X 10.4 Tiger. All features in the application come with documentation, and a reset function to reverse any unwanted changes which may have been made. The upgrade to Mac Pilot 3 is free for users who had purchased Mac Pilot 1.x/2.x after October 31, 2007. Additionally, owners of Koingo Software's Software CD or Utility Package get this update for free as well. If these conditions don't apply, a small C$9.95 upgrade fee is required. New users can buy the product for C$19.95 after trying the product free for fifteen days. The upgrade form is available on the business's web site. Mac Pilot 3: http://www.koingosw.com/products/macpilot.php Direct Download Link: http://www.koingosw.com/downloads/macintosh/mac_pilot.dmg Purchase Link: http://www.koingosw.com/store.php?product=28&license=single Upgrade Link: http://www.koingosw.com/store-upgrade.php Screenshot: http://www.koingosw.com/products/previews/macpilot.jpg Icon: http://www.koingosw.com/products/icons/macpilot-64x64-web.png Located in Kamloops, British Columbia, Koingo Software has been providing digital solutions for businesses and individuals since 1994. Our award-winning software is now installed on thousands of personal computers worldwide - seamlessly integrating with a modern lifestyle. ### Josh Hague Owner, Developer 408-516-4357 main ( -at -) koingosw.com *******
-
Hello, MSI Overclocking Contest ( -at -) Madshrimps "Madshrimps is proud to be selected by MSI to participate in the European MSI Overclocking Contest. Our humble site has been appointed the task to send one Belgian overclocker (or team of two) to Amsterdam, Netherlands for the big finals in August. You can win MSI Motherboards, VGA cards and a performance laptop!" http://www.madshrimps.be/vbulletin/f45/msi-overclocking-contest-info-howto-join-43798/ __________________ Thank you in advance for posting,
-
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - -------------------------------------------------------------------------- Debian Security Advisory DSA 1492-2 security ( -at -) debian.org http://www.debian.org/security/ Martin Schulze April 27th, 2008 http://www.debian.org/security/faq - -------------------------------------------------------------------------- Package : wml Vulnerability : insecure temporary files Problem type : local Debian-specific: no CVE IDs : CVE-2008-0665 CVE-2008-0666 Debian Bugs : 463907 471345 The security update DSA 1492-1 fixed the security problem below but introduced a new problem by not removing temporary directories in the ipp backend. This update corrects this. For completeness here is the original advisory text: Frank Lichtenheld and Nico Golde discovered that WML, an off-line HTML generation toolkit, creates insecure temporary files in the eperl and ipp backends and in the wmg.cgi script, which could lead to local denial of service by overwriting files. The old stable distribution (sarge) is not affected. For the stable distribution (etch) this problem has been fixed in version 2.0.11-1etch2. For the unstable distribution (sid) this problem has been fixed in version 2.0.11ds1-0.2. We recommend that you upgrade your wml package. Upgrade Instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given at the end of this advisory: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 4.0 alias etch - ------------------------------- Source archives: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2.dsc Size/MD5 checksum: 1034 e6602892619c273d2e94d2e811401ca0 http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2.diff.gz Size/MD5 checksum: 24315 3d027bd58657f599554d621c9c0eb257 http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11.orig.tar.gz Size/MD5 checksum: 3115230 a26feebf4e59e9a6940f54c69dde05b5 Alpha architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_alpha.deb Size/MD5 checksum: 453964 95f766197c061dbc17e81f307554eb8d AMD64 architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_amd64.deb Size/MD5 checksum: 452754 87f0ad5e46d380520b3daa4ee97c8dd8 ARM architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_arm.deb Size/MD5 checksum: 453460 6e395efde4baa113a94347bc5482a70e HP Precision architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_hppa.deb Size/MD5 checksum: 456420 25728b4b43a367b108136d55ae846036 Intel IA-32 architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_i386.deb Size/MD5 checksum: 450732 6726783fb47c1513b2d026c606808a0d Intel IA-64 architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_ia64.deb Size/MD5 checksum: 458526 451f91b95e0ef8c097e52af6ebbd2387 Big endian MIPS architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_mips.deb Size/MD5 checksum: 450890 05c89260e5912c5c899c12f77f41d2a6 Little endian MIPS architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_mipsel.deb Size/MD5 checksum: 449482 01684fe1e0d0b999d95c5d217680d457 PowerPC architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_powerpc.deb Size/MD5 checksum: 452704 6019492c2607cacbbdf23e0021b94b4c IBM S/390 architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_s390.deb Size/MD5 checksum: 451168 9afba51d12248c36561cd0dd4ace714c Sun Sparc architecture: http://security.debian.org/pool/updates/main/w/wml/wml_2.0.11-1etch2_sparc.deb Size/MD5 checksum: 450886 2f0e262e57451321cb5c0adf0543d787 These files will probably be moved into the stable distribution on its next update. - --------------------------------------------------------------------------------- For apt-get: deb http://security.debian.org/ stable/updates main For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
-
Cooler Master Giveaway ( -at -) ThinkComputers.org Review URL: http://www.thinkcomputers.org/index.php?x=cm-giveaway-april08 Image URL (506 X 296): http://www.thinkcomputers.org/ART/giveaways/april08.jpg Alt Image URL (336 X 199): http://www.thinkcomputers.org/ART/giveaways/april08-small.jpg Quote: "ThinkComputers has teamed up with Cooler Master to give you another contest. They will be providing us with 3 great prizes to give away! We have a Stacker 830 full tower PC Case, Real Power Pro 1000W Power Supply, and Sphere CPU Cooler. These are 3 great products and we are giving them away for free! Just like the previous contest we will be running this one on the forums. To qualify for any of the prizes you need 35 posts in our forums and NEED to reply to this post. That gives you 1 entry into the contest. We will be doing Cooler Master trivia all throughout the contest. Check back to this forum thread for trivia questions. Once they are posted you will have 24 hours to answer them. To answer them you will need to send me a message on the forums with the answer. Each correct answer you submit will give you an extra entry into the contest."
-
Hello, OCIA.net has posted their review of the Tuniq Miniplant 950W Power Supply. Below is a direct quote from the review: "Tuniq, a subsidiary of Sunbeamtech, really made their name known with their Tuniq Tower CPU air cooler. The Tuniq Tower was recognized as one of the best air coolers on the market for longer than a year. Since then, they have become increasingly popular for their cases, thermal accessories, and most recently, power supplies. One power supply that has been getting a lot of attention lately is the Tuniq Miniplant 950W which we have for review today." Direct Link: http://www.ocia.net/reviews/tuniqminiplant/page1.shtml Image Link: http://www.ocia.net/images/icons/285.jpg Site Link: http://www.ocia.net A news posting on your site would be greatly appreciated. Thanks in advance for your support! Thanks, OCIA.net Staff http://www.ocia.net
-
One reader wants to know how cheap a 22-inch monitor can be and still be any good. Another would like a video card for a thirty-inch screen that costs less than a car. My answers, which _may_ even actually be correct, are here: http://www.dansdata.com/askdan00031.htm A news post would be appreciated. -- Daniel Rutter http://www.dansdata.com/ - hardware reviews and more!
-
Pretty soon, mesh-network repeaters will be cheap enough to give away. Or throw onto people's roofs. I explore the implications here: http://www.dansdata.com/gz081.htm A news post would be appreciated. -- Daniel Rutter http://www.dansdata.com/ - hardware reviews and more!
-
[Tech ARP] Secret Pre-Release Details On Windows XP Service Pack 3
news posted a topic in Upcoming News
Hello fellow editors! Tech ARP ( http://www.techarp.com/ <http://www.techarp.com/>'>http://www.techarp.com/> ) has just posted the Secret Pre-Release Details On Windows XP Service Pack 3. Quote - We were the first to break the news on the release of Windows Vista Service Pack 1 and the final RTM schedule of Windows XP Service Pack 3. Now, we will be the first to release the full details on Microsoft's Windows XP Service Pack 3, which as we know will be available for manual update on April 29, 2008. That's just a few days away! Here's a quote from the article :- "Surprisingly, Service Pack 3 is only 72 MB in size. That isn't really very big, as it represents almost four years of cumulative updates. However, it takes up almost 900 MB of space once installed. Here's a comparison of the size and space requirements of Service Pack 3 versus Service Pack 2." Direct URL - http://www.techarp.com/showarticle.aspx?artno=536 Logo URL - http://www.techarp.com/article/Microsoft/Windows_XP_SP3_Details/icon_big .png We would appreciate your help in getting the word out. Rest assured that we will reciprocate and post your news with all due haste. If you have any news, please feel free to send it to our news mailbox at news ( -at -) techarp.com. Thanks! Tech ARP http://www.techarp.com/ <http://www.techarp.com/> -
Our first review of a solid state disk compares the OCZ 64GB SATA-I model to the new VelociRaptor hard drive as well as other desktop HDDs and even another 2.5" notebook drive from Western Digital. The results are incredibly interesting though not as impressive as originally hoped. URL: http://www.pcper.com/article.php?aid=551&type=expert Quote: "I knew coming into this review that the solid state drives were going to differ greatly from standard hard drives in terms of performance but I didn't know exactly how much and in which ways. The very obvious strong spot for the OCZ 64GB SSD is the pure speed it demonstrated in random access times; with a time of 0.2 ms compared to the 6.9 ms of our fastest platter-based hard drive the OCZ SSD is 345x faster in get that single bit of data. This can obviously incredible beneficial to applications that utilize a HUGE amount of random reads as long as those reads are for very small bits of data." Thanks for a post! Ryan Shrout Owner - PC Perspective rshrout ( -at -) pcper.com
-
Hello Webmasters and News Posters, NEW CONTENT (CPU & Chipset) - AMD Athlon 4850e & 780G as HTPC Platform QUOTE: "AMD has for quite some time provided the most power efficient processors on the market. In fact, the ULV versions of the Athlon 64 X2 processors have been able to draw as little as 45watts, and at speeds of above 2GHz. Now, that’s something even the laptops would love to have running in them, yet they are desktop processors. How’s that for efficiency? Today we are testing out AMD’s latest addition to its 45watt TDP family with a clock speed of 2.5 GHz; that’s pretty efficient for such a powerful processor with Dual Core functions. Rather than just being a CPU review, today we are looking at the new Athlon 4850e processor as a HTPC component in conjunction with the AMD 780G chipset and Radeon HD 3450 graphics card." For more information, please visit - http://www.tweaktown.com/articles/1400/amd_athlon_4850e_780g_as_htpc_platform/index.html Best Regards, The TweakTown Team http://www.tweaktown.com
-
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] kdelibs (SSA:2008-116-01) New kdelibs packages are available for Slackware 12.0 and -current to fix a security issue. More details about this issue may be found in the Common Vulnerabilities and Exposures (CVE) database: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1671 As well as from the KDE web site: http://www.kde.org/info/security/advisory-20080426-2.txt Here are the details from the Slackware 12.0 ChangeLog: +--------------------------+ patches/packages/kdelibs-3.5.7-i486-4_slack12.0.tgz: Patched to fix a security problem. From the KDE advisory: "If start_kdeinit is installed as setuid root, a local user might be able to send unix signals to other processes, cause a denial of service or even possibly execute arbitrary code." This issue affects KDE 3.5.5 through KDE 3.5.9. We recommend upgrading to the new kdelibs package as soon as possible. For more information, see: http://www.kde.org/info/security/advisory-20080426-2.txt http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1671 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ HINT: Getting slow download speeds from ftp.slackware.com? Give slackware.osuosl.org a try. This is another primary FTP site for Slackware that can be considerably faster than downloading directly from ftp.slackware.com. Thanks to the friendly folks at the OSU Open Source Lab (http://osuosl.org) for donating additional FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://slackware.com for additional mirror sites near you. Updated package for Slackware 12.0: ftp://ftp.slackware.com/pub/slackware/slackware-12.0/patches/packages/kdelibs-3.5.7-i486-4_slack12.0.tgz Updated package for Slackware -current: ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/kde/kdelibs-3.5.9-i486-4.tgz MD5 signatures: +-------------+ Slackware 12.0 package: 53e51139abaecf5e2c14c2ac6cb144c0 kdelibs-3.5.7-i486-4_slack12.0.tgz Slackware -current package: 9ed2e334f6c2f2f07a9e6e7948739413 kdelibs-3.5.9-i486-4.tgz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg kdelibs-3.5.7-i486-4_slack12.0.tgz +-----+ Slackware Linux Security Team http://slackware.com/gpg-key security ( -at -) slackware.com +------------------------------------------------------------------------+
-
Matrox TripleHead 2 Go Digital Edition (DVI) review <http://www.guru3d.com/article/matrox-triplehead-2-go-digital-edition-dvi-review/>'>http://www.guru3d.com/article/matrox-triplehead-2-go-digital-edition-dvi-review/> Exactly two years ago we reviewed the analog (VGA) Matrox Triplehead to go. And although a little rough around the edges when it came to graphics card support, times have changed for the better. In fact last year they released a digital (DVI interface) version of the product and we figured it was about time to check out how this small box of magic has developed, and we where pleasantly surprised I might add. Full article here: http://www.guru3d.com/article/matrox-triplehead-2-go-digital-edition-dvi-review/ <http://www.guru3d.com/article/matrox-triplehead-2-go-digital-edition-dvi-review/> --
-
Hello Technology News Community, I4U NEWS reviews the Hypersonic AG2 12.1-inch Notebook. Quote from the review: "Today we are checking out an awesome thin-and-light notebook form Hypersonic called the AG2. This little notebook has tons of performance and power tucked into a small, compact design. The weight for the Hypersonic AG2 of 4.14 pounds makes it very portable and if it was a few ounces lighter it would be a major force in the ultraportable category. Watching a movie on the glossy screen was fantastic. The colors are sharp and vivid and no ghosting or tearing of images was noticed. The same glossy screen can be a drawback in some environments though thanks to lots of glare." Full Review: http://www.i4u.com/full-review-419.html Photo: http://www.i4u.com/images/2007/hypersonicag2-stock.jpg Homepage Link: http://www.i4u.com We would very much appreciate if you post this news story/review on your site. As always I4U News is open to cross-post your technology stories. Please visit http://www.i4u.com for more stories. As long as you provide credits and links to the original story on I4U News we appreciate any cross-posting of our content. If you don't want to receive review and news submissions from I4U News please just reply to this email indicating that or use the unsubscribe link below. We appreciate giving us a chance to inform you about our latest reviews and please apologize if this email reaches you in error or does not meet your interest. best regards, Chief Editor Luigi Lugmayr :: I4U Technology News Network :: http://www.i4u.com - Technology News http://shop.i4u.com - I4U Shop http://pricewatch.i4u.com - Shopping Guide http://www.wristdreams.com - Technology Wrist Watches :::
-
Hello, OCIA.net has posted their review of the Zibra Open It! Package Opener. Below is a direct quote from the review: "The design of the Open It! is based on diagonal cutters, better known to people not into electronics as wire cutters, wire snippers, or wire clippers. They are 8.5" from the tips of the blades to the end of the longest handle. The handles are made of high impact plastic, the darker edges are a rubberized non-slip material." Direct Link: http://www.ocia.net/reviews/openit/page1.shtml Image Link: http://www.ocia.net/images/icons/284.jpg Site Link: http://www.ocia.net A news posting on your site would be greatly appreciated. Thanks in advance for your support! Thanks, OCIA.net Staff http://www.ocia.net
-
A news post would be great. OCC has published a new review of the Vizo Propeller System Cooler Here is a quote from the review: Quote: "While increasing the cooling capacity of your computer is a very important thing to do, the Vizo Propeller is not a one size fits all solution. The expansion slot type of cooling fan has been around for quite a while. Is the Vizo Propeller an improvement over the many that have come before it? Well it does the same thing but it blows out instead of bringing in cool air to cool a component. The Propeller does provide a small benefit by increasing air flow through a part of the case that rarely is ventilated properly. At stock loads there is no benefit to the Propeller. Measured with the IR thermometer the outside of the card was slightly warmer with the Propeller than without it." Title: Vizo Propeller System Cooler Review Link: http://www.overclockersclub.com/reviews/vizo_propeller/ Img: http://www.overclockersclub.com/siteimages/articles/vizo_propeller/3_thumb.jpg
-
The EVGA 8800GT 1GB AKIMBO is an interesting card in many respects. The performance is not up to the 9800GTX but it is close being that the two cards share the same video chip just with 16 SPs disabled. The main selling point of this card is the AKIMBO cooling solution as it kept the card noticeably cooler during operation, about 15-20C cooler according to NVIDIA’s temperature monitoring software. Review Link: http://www.motherboards.org/reviews/hardware/1771_1.html
-
Grand Theft Auto 4 (Xbox 360 and Playstation 3) Review @ Gaming Heaven
news posted a topic in Upcoming News
The Grand Theft Auto series has been the jewel in Rockstars crown for a long time and the latest incarnation has been surrounded with unparalleled speculation for well over a year now. Surely no game to live up to this hype? Well once again it seems that Rockstar have proved us wrong, everything they touch truly does turn to gold because Grand Theft Auto 4 is quite possibly the best game I have ever played, period. http://www.driverheaven.net/gamingreviews.php?reviewid=590 _________________________________ Gaming Heaven News Mailer -
SilverStone Strider ST50F 500 W Power Supply Review @ Hardware Secrets
news posted a topic in Upcoming News
Hi, We've just posted a new article on our website, Hardware Secrets. Title: SilverStone Strider ST50F 500 W Power Supply Review Link: http://www.hardwaresecrets.com/article/548 Category: Reviews Summary: Today we dissected Strider ST50F, a 500 W power supply from Silverstone. Is this a good product? Can it really deliver its labeled 500 W? Check it out. Here is a snippet: "SilverStone has several power supply lines ranging from 350 W to 1,200 W and we were very curious to review a product from this manufacturer. For our first review of a SilverStone product, we decided to take a look on a mainstream product, Strider ST50F, which is a 500 W power supply costing only USD 67 at Newegg.com. How this product compares to other units from this power range we reviewed so far? Can it really deliver its rated 500 W? Is this a good product for Average Joe? Let's see." A news post would be highly appreciated. Thanks in advance, Gabriel Torres Editor-in-Chief Hardware Secrets http://www.hardwaresecrets.com --------------------------------------------------------------------- -
[gentoo-announce] [ GLSA 200804-29 ] Comix: Multiple vulnerabilities
news posted a topic in Upcoming News
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200804-29 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: Comix: Multiple vulnerabilities Date: April 25, 2008 Bugs: #215694 ID: 200804-29 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======== Multiple vulnerabilities in Comix may lead to execution of arbitrary commands and a Denial of Service. Background ========== Comix is a GTK comic book viewer. Affected packages ================= ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-gfx/comix < 3.6.4-r1 >= 3.6.4-r1 Description =========== Comix does not properly sanitize filenames containing shell metacharacters when they are passed to the rar, unrar, or jpegtran programs (CVE-2008-1568). Comix also creates directories with predictable names (CVE-2008-1796). Impact ====== A remote attacker could exploit the first vulnerability by enticing a user to use Comix to open a file with a specially crafted filename, resulting in the execution of arbitrary commands. The second vulnerability could be exploited by a local attacker to cause a Denial of Service by creating a file or directory with the same filename as the predictable filename used by Comix. Workaround ========== There is no known workaround at this time. Resolution ========== All Comix users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=media-gfx/comix-3.6.4-r1" References ========== [ 1 ] CVE-2008-1568 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1568 [ 2 ] CVE-2008-1796 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1796 Availability ============ This GLSA and any updates to it are available for viewing at the Gentoo Security Website: http://security.gentoo.org/glsa/glsa-200804-29.xml Concerns? ========= Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users machines is of utmost importance to us. Any security concerns should be addressed to security ( -at -) gentoo.org or alternatively, you may file a bug at http://bugs.gentoo.org. License ======= Copyright 2008 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. http://creativecommons.org/licenses/by-sa/2.5 -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.7 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD8DBQFIEkH4uhJ+ozIKI5gRAmiNAKCPHnfT5QvO2DSX5GLVFSktoJxuUwCdHQ7L CsRRiV/a7lFJnuCxwl4Sg6E= =DaV+ -----END PGP SIGNATURE----- -- -
This is a multi-part message in MIME format... ------------=_1209155155-11275-3231 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 _______________________________________________________________________ Mandriva Linux Advisory MDVA-2008:048 http://www.mandriva.com/security/ _______________________________________________________________________ Package : x11-driver-video Date : April 25, 2008 Affected: 2008.1 _______________________________________________________________________ Problem Description: The virtual package x11-driver-video would incorrectly require sparc specific video drivers on a x86 architecture computer. The updated package fixes the issue. _______________________________________________________________________ Updated Packages: Mandriva Linux 2008.1: a4ad45db941721863351285abfa9c582 2008.1/i586/x11-driver-video-1.0.0-13.1mdv2008.1.i586.rpm 33b7205b62c261f3521c09ced2f5ce09 2008.1/SRPMS/x11-driver-video-1.0.0-13.1mdv2008.1.src.rpm Mandriva Linux 2008.1/X86_64: ad58b859c4882c184e629e88405efeb9 2008.1/x86_64/x11-driver-video-1.0.0-13.1mdv2008.1.x86_64.rpm 33b7205b62c261f3521c09ced2f5ce09 2008.1/SRPMS/x11-driver-video-1.0.0-13.1mdv2008.1.src.rpm _______________________________________________________________________ To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com _______________________________________________________________________ Type Bits/KeyID Date User ID pub 1024D/22458A98 2000-07-10 Mandriva Security Team -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iD8DBQFIEhJkmqjQ0CJFipgRArD1AKCN+80K1exCVcMCr2ZpoHPY2ZQCpACgtSR8 oPvXBhK1EDpxza5iYDhjlBo= =gIVM -----END PGP SIGNATURE----- ------------=_1209155155-11275-3231 Content-Type: text/plain; name="message-footer.txt" Content-Disposition: inline; filename="message-footer.txt" Content-Transfer-Encoding: 8bit To unsubscribe, send a email to sympa ( -at -) mandrivalinux.org with this subject : unsubscribe security-announce _______________________________________________________ Want to buy your Pack or Services from Mandriva? Go to http://www.mandrivastore.com Join the Club : http://www.mandrivaclub.com _______________________________________________________ ------------=_1209155155-11275-3231--
-
At Phoronix we have posted a new article. A link to this from your site's news section would be greatly appreciated. Title: Ubuntu 8.04 vs. Windows Vista Power Usage ( -at -) Phoronix Direct Link: http://www.phoronix.com/vr.php?view=12278 Summary: "In Q4'07 we had looked at Ubuntu's power consumption with all of their Linux releases going back to Ubuntu 5.04. While Linux has improved in recent years when it comes to power efficiency and optimizations, more processes running on the desktop had canceled out any real power improvements. Following that article was a look at power consumption between Windows and Linux. We had used an old desktop system in that comparison and Ubuntu 7.10 was consuming the most power while idling but Fedora 8 Test 3 had consumed the least amount of power and had beat out both Windows XP and Vista. While using the desktop, however, both versions of Windows had consumed less power than Fedora and Ubuntu. With Ubuntu 8.04 LTS now available, we have decided to run another simple power comparison. This time we are using a Lenovo ThinkPad notebook and an AMD server as we see whether Ubuntu Hardy Heron or Microsoft Windows Vista consumes less power." Please feel free to contact us with any questions or comments you may
-
BODY { FONT-SIZE: 13px; COLOR: #FFFFFF; FONT-FAMILY: 'trebuchet ms', verdana, sans-serif; BACKGROUND-COLOR: #cccccc } A { FONT-WEIGHT: bold; COLOR: #FFCC00 } A:visited { COLOR: #F97B00 } A:hover { TEXT-DECORATION: underline } .H1 { FONT-WEIGHT: bold; FONT-SIZE: 20px; COLOR: #FFCC00; FONT-STYLE: normal; } IMG { BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px } .siggy { BORDER-RIGHT: 0px; PADDING-RIGHT: 0px; BORDER-TOP: #aaaaaa 1px dashed; PADDING-LEFT: 0px; PADDING-BOTTOM: 5px; MARGIN: 0px 10px; BORDER-LEFT: 0px; PADDING-TOP: 5px; BORDER-BOTTOM: #aaaaaa 1px dashed; FONT-STYLE: italic } #rtitle { BACKGROUND-COLOR: #555555; BORDER-RIGHT: black 1px solid; BORDER-TOP: black 1px solid; BORDER-LEFT: black 1px solid; BORDER-BOTTOM: black 1px solid; PADDING-LEFT: 5px; PADDING-TOP: 5px; PADDING-BOTTOM: 5px; MARGIN: 0px 0px; } #content { COLOR: #FFFFFF; BORDER-RIGHT: #777777 1px solid; PADDING-RIGHT: 10px; BORDER-TOP: #dedede 1px solid; PADDING-LEFT: 10px; PADDING-BOTTOM: 5px; BORDER-LEFT: #cccccc 1px solid; PADDING-TOP: 5px; BORDER-BOTTOM: #555555 1px solid; BACKGROUND-COLOR: #333333 } EVGA nForce 750i SLI FTW Motherboard ReviewDate: 04-25-2007 Written By Ben Sun EVGA has quite a success on their hands in the form of this new 750i SLI FTW Edition as far as overclocking goes as this motherboard excels most others in this area. Offering exceptional BIOS options that are easy to manipulate is a key factor in the success of this product and every BIOS tweaker will be satisfied with the amount of headroom available on the FTW Edition. EVGA only used high quality parts and beyond spec solid state capacitors to achieve this accomplishment and it is the king of the 750i motherboards. Link: http://www.gamepyre.com/hardwared.html?aid=957&p=1 We support mutual news postings and would appreciate a link from your site. Thanks for your continued support and readership. Elric PharesEditor-in-Chiefwww.gamepyre.comdoc ( -at -) gamepyre.comTo unsubscribe: Click Here.
-
This is a multi-part message in MIME format... ------------=_1209149250-11275-3228 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 _______________________________________________________________________ Mandriva Linux Advisory MDVA-2008:047 http://www.mandriva.com/security/ _______________________________________________________________________ Package : laptop-mode-tools Date : April 25, 2008 Affected: 2008.0 _______________________________________________________________________ Problem Description: Default power management settings for hard disks may trigger excessive load/unload cycles on some disk models, and shorten their lifetime. This update package fixes the problem, by setting a less aggressive hard disk power management level. _______________________________________________________________________ References: http://qa.mandriva.com/show_bug.cgi?id=35190 _______________________________________________________________________ Updated Packages: Mandriva Linux 2008.0: 85fb89d989f7e4ce50261fe0f0aa8628 2008.0/i586/laptop-mode-tools-1.32-2.1mdv2008.0.noarch.rpm 56530d42bf5f92dc4beeeadca0f7ae2f 2008.0/SRPMS/laptop-mode-tools-1.32-2.1mdv2008.0.src.rpm Mandriva Linux 2008.0/X86_64: 8fc46679cae767269ff8af65effc46d8 2008.0/x86_64/laptop-mode-tools-1.32-2.1mdv2008.0.noarch.rpm 56530d42bf5f92dc4beeeadca0f7ae2f 2008.0/SRPMS/laptop-mode-tools-1.32-2.1mdv2008.0.src.rpm _______________________________________________________________________ To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com _______________________________________________________________________ Type Bits/KeyID Date User ID pub 1024D/22458A98 2000-07-10 Mandriva Security Team -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iD8DBQFIEfqqmqjQ0CJFipgRAs2uAJ4/U2SWFdBkbI5729rurkoE1NbV9ACg8eiN lmikcc8Ujg+CJ6Ros7A/7Mo= =q7af -----END PGP SIGNATURE----- ------------=_1209149250-11275-3228 Content-Type: text/plain; name="message-footer.txt" Content-Disposition: inline; filename="message-footer.txt" Content-Transfer-Encoding: 8bit To unsubscribe, send a email to sympa ( -at -) mandrivalinux.org with this subject : unsubscribe security-announce _______________________________________________________ Want to buy your Pack or Services from Mandriva? Go to http://www.mandrivastore.com Join the Club : http://www.mandrivaclub.com _______________________________________________________ ------------=_1209149250-11275-3228--