Author Archives: ayn

So it *was* AWStats

AWStats sucks, I am done with it. I have disabled it since my server got hacked last time, and according to this that *was* the point of entry!!

– ————————————————————————–
Debian Security Advisory DSA 1058-1 security@debian.org
http://www.debian.org/security/ Martin Schulze
May 18th, 2006 http://www.debian.org/security/faq
– ————————————————————————–

Package : awstats
Vulnerability : missing input sanitising
Problem type : remote
Debian-specific: no
CVE ID : CVE-2006-2237
BugTraq ID : 17844
Debian Bugs : 364443 365909 365910

Hendrik Weimer discovered that specially crafted web requests can
cause awstats, a powerful and featureful web server log analyzer, to
execute arbitrary commands.

The old stable distribution (woody) is not affected by this problem.

For the stable distribution (sarge) this problem has been fixed in
version 6.4-1sarge2.

For the unstable distribution (sid) this problem has been fixed in
version 6.5-2.

We recommend that you upgrade your awstats package.

And it is DONE!!!!

ayn@NGBERT:~>sudo apt-get remove awstats
Reading Package Lists… Done
Building Dependency Tree… Done
The following packages will be REMOVED:
awstats
0 upgraded, 0 newly installed, 1 to remove and 0 not upgraded.
Need to get 0B of archives.
After unpacking 4202kB disk space will be freed.
Do you want to continue? [Y/n]
(Reading database … 45001 files and directories currently installed.)
Removing awstats …

Technorati Tags: , ,

gallery to flickr

My snapshot gallery contains almost 4k images and it’s really getting a bit slow. Gallery2 sucks even more on my server, so I’m considering moving snapshots to Flickr. I upgraded to a pro account and found this gallery2flickr script, it didn’t quite work out of the box, but of course after 15 minutes of hacking I got it to work… At least I was able to transfer a random album from my snapshot gallery to flickr. Basically I switched to their new API authentication method, now it goes to flickr and asks for permissions. When you setup your API key, point the callback URL to auth.php

Instead of installing the script to the albums directory I installed it to my base gallery installation directory, this is because my albums tree isn’t really accessable from the web.

Here’s the modified version of go.php if interested, obviously, I’ve taken out the API and secret keys.

technorati tags: , , ,

New denim from APC

The super tight unisex ones are DOPE!!

Only thing I don’t like about them, and I have to confirm this, is that since they are taper so much the selvage is cut off. The denim is still Japanese selvage denim, but you just can’t rock them cuffed to rock the selvage… well, I cuff my jeans because of shrinkage after washing, not really to "show off" the selvage seam, but they do look cool… IMO…

 

technorati tags: , , ,

MacBook

So the MacBook is out! I love it!

  • It comes in white and black
  • There is only one size so far, the 13" widescreen
  • built-in iSight
  • Now they sport Gigabit ethernet
  • front row remote is included
  • they use Li-polymer batteries, I’m not sure if it did in the iBooks
  • Now graphic cards support dual-screen like the PowerBooks/MBP’s
  • mini-Toslink audio i/o ports
  • all this for 1100 bucks!!

technorati tags:

Treo 700p

Treo 700p Overview

  • Dual band CDMA 2000 EvDO radio
  • 128MB non-volatile memory (60MB user available); 2GB and up SD card support
  • Intel XScale 312 MHz processor
  • 320 x 320 color TFT Screen
  • Palm OS 5.4.9
  • 1.3-megapixel digital camera (1280×1024 resolution)
  • Built-in Bluetooth®1.2 wireless technology (A2DP not available)
  • Extend EvDO speeds to your laptop using DUN
  • Innovative phone features
  • Enhanced award-winning Blazer 4.5 web browser
  • Rich multimedia capabilities for streaming music, video and more
  • Enhanced email -wireless access to Outlook, Yahoo!, AOL, and Gmail
  • Supports native Microsoft Word, Excel and PowerPoint documents, and PDF viewing on the go

treocentral.com >> Stories >> Hardware >> Palm Reveals Treo 700p Smartphone

technorati tags: , , ,