Quote:
A vulnerability has been reported in OpenSSL, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library.
The vulnerability is caused due to a race condition within the TLS extension parsing code, which can be exploited to cause a heap-based buffer overflow.
Secunia Advisory
Emergency software update repairs vulnerability that could allow remote attackers to execute arbitrary code.
I want to do some experiments with buffer overflows on my various virtual machines, including (but not limited to) Debian 6, Ubuntu 12.04, Fedora 16, but every time I try to execute the buffer overflow exploit I get the following message:
stack smashing detected (core dumped)
After doing my research I read that it is a feature called buffer overflow protection implemented in the compiler.
Hello,I want to install KDE Office/koffice/calligra on my CentOS 6.3 box. But a search across the repos does not provide any packageyum search koffice*Loaded plugins: ... [by abaxor]
The Calligra project has announced the first snapshot release of the Calligra suite, five months after Calligra and KOffice split ways. During that time, the Calligra team has improved the core libraries and all the applications.
read more
KOffice 项目的延续 Calligra Suite 项目宣布成立;数码暗房 darktable 0.71 发布;疑似 Android 3.0 系统的截图泄露。
Calligra Suite 项目继承了 KOffice 社区分裂后绝大部分成员,代码管理也迁移到了 Git 平台。其中组件命名上的变化:
Word: KWord 的进化版本
Tables:KSpread 表格
Stage:KPresenter 幻灯片
Flow:Kivio 流程图(将在下个版本包含)
Kexi:数据库程序
Plan:KPlato 项目管理
Krita:基于像素图的图像绘制及编辑
Karbon:基于矢量的图像绘制及编辑
项目组宣布首要任务是继续 KOffice 2.3 生命周期。
The Calligra Suite is an unusual compilation of office tools with much potential -- but it has a good deal of maturing to do before it can advance beyond its mediocre performance following a debut almost three years ago. Calligra is a fork of KDE's KOffice that grew out of unresolved disputes among KOffice developers. The project team recently announced the second stable release.
KDE continues KOffice development through the new Calligra Suite project.
LinuxSecurity.com: Martin Barbella discovered an integer overflow in an XSLT node sortingroutine. An attacker could exploit this to overflow a buffer and cause adenial of service or possibly execute arbitrary code with the privileges ofthe user invoking the program. (CVE-2010-1199) [More...]