Take a moment to fully understand the requirements of VMware’s VMotion
and the effect that the various iterations of processors within your
current and/or to-be environment will have on your VMotion capability.
As a reminder, VMotion is VMware’s capability to do a live migration
between like platforms. It’s that “like platform” that can be a gotcha.
As we move through Intel’s Paxville, to Dempsey to Woodcrest processors,
please keep in mind:
* VMotion between Woodcrest and previous Xeon CPUs will not be supported
* VMotion requires the same CPU instruction sets between the host and
target servers
* Woodcrest uses a different instruction set than previous Xeon CPUs
For more information check articles on VMware’s Knowledge Base:
VirtualCenter VMotion Requirements
VMotion CPU Compatibility Requirements for Intel Processors
These guys seem to have a lot of old service packs archived:
http://kiribati.unice.fr/distribution/servicespack
New Mambo, Joomla releases fix security vulnerabilities (NEW)
Last Updated: 2006-06-27 by Bojan Zdrnja (Version: 1)
Various security vulnerabilities have been identified in two most
popular open source CMS (Content Management System) packages.
All version of Mambo prior to 4.6RC1 are vulnerable to a SQL injection
attack in the weblinks.php file. You can patch this manually as only two
variables need to be escaped, or you can download patches from the Mambo
web site, http://www.mamboserver.com
We’ve also received reports that some vulnerabilities in previous
versions of Mambo (older than 4.5.3) are being actively exploited, so be
sure that you are running the latest version, with the security patch
installed. If we get more information about attacks we’ll post an
update.
New release of Joomla, 1.0.10 also fixes couple of security
vulnerabilities. Joomla is also vulnerable to SQL injection attacks, of
which 3 rated critical were fixed in the latest release. As the latest
version fixes other security vulnerabilities and numerous bugs, users
are urged to upgrade. You can find more information on the Joomla web
site, http://www.joomla.org
Sudo For Windows=20
Last Updated: 2006-06-24 by Scott Fendley
One of my colleagues sent me a URL today of an interesting utility I
have been wishing I had for a while in the Windows environment that I
thought I would share with you this evening. For those of us that
learned Unix systems administration prior to dealing with the Windows
environment, sudo was one of those tools that made it much easier to
compute more safely. Well, sudo is now available for the Windows
operating system as well. This tool is somewhat different from the
RunAs command in that you use your own passphrase (with the right
configuration) to elevate the privledges while running a particular
application. For those Unix geeks out there, RunAs is probably likened
to su in some respects. So if you were ever looking for a Sudo for
windows, take a look at http://sudowin.sourceforge.net/
Reminder about MS06-025
Last Updated: 2006-06-27 UTC by Kevin Liston
Microsoft has released on official comment at http://www.microsoft.com/technet/security/advisory/921923.mspx
The gist: MS06-025 works to protect against the published exploit.
Un-patched Windows 2000 systems are primarily at risk from this
vulnerability.
Windows XP SP2, Windows Server 2003, and Windows Server 2003 SP1 require
the attcker to have a valid login.
Windows 98, 98SE and ME are not affected by this vulnerability.
To clarify things a bit with some extra information we received in the
mean time.
Windows 2000 Service Pack 4 and Windows XP Service Pack 1 systems are
primarily at risk as this vulnerability can be exploited by an anonymous
user that needs to deliver a specially crafted message to the vulnerable
system. If you are running any of these install the patch as soon as
possible.
On Windows XP Service Pack 2 and Windows 2003 systems, a user has to be
authenticated (has to have valid credentials) to the system to exploit
the vulnerability.