Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Red Hat holes less severe than Windows - study
The Register ^ | 2005-07-27 | Gavin Clarke

Posted on 07/28/2005 10:08:40 AM PDT by N3WBI3

Red Hat is making hay from a report on system security vulnerabilities that apparently gives Red Hat Enterprise Linux (RHEL) a clean bill of health.

A SANS Institute report has identified 20 top internet vulnerabilities of which only two affected RHEL, Red Hat said. According to Red Hat, patches have already been issued via the Red Hat network.

Red Hat claimed the report proves RHEL subscribers were less susceptible to network security holes than users of other platforms. The statement, though, is apparently a repost to studies backed by Microsoft, designed to “prove” Windows is more secure than Linux and offers better performance, that involved RHEL.

A Security Innovation (SI) study published in June and a VeriTest report in April specifically pitted Windows Server 2003 and SQL Sever 2003 against RHEL running MySQL and Oracle 10g, in the SI study, for both security and performance.

Mike Nash, Microsoft's security business and technology unit corporate vice president, recently drew on the SI study to dis' MySQL and Oracle 10g on RHEL, saying: "Unbreakable? I think not," in a reference to Oracle's "Unbreakable Linux" campaign.

Coming back at Microsoft, Red Hat said Wednesday the SANS Institute report showed “relatively few" critical issues affect Linux users. "There are many research reports that try to compare the number of vulnerabilities between Linux and other operating systems, but none take into account the severity of the issues," Red Hat said.

SANS Institute said this quarter's six most critical vulnerabilities affected Internet Explorer (IE), Exchange Server, Windows Message Queuing Server, Windows SMB protocol processing, Windows HTML help file parsing and Windows shell remote code execution.

Away from the Microsoft-Red Hat match, SANS Institute pointed to a "particularly worrisome" trend in vulnerabilities in data back-up products and cited vulnerabilities in Computer Associates' BrightStor ARCServe and Veritas Backup software. "Unfortunately, [storage] products have become easy targets for attackers and since they have access to substantially all data, the products' weakness create real danger," SANS Institute said. [Veritas hooked up with Symantec just in the nick of time, ey? - Ed.]

Home users also face heightened risk of attack, thanks to new holes in iTunes, RealPlayer and IE. RealNetworks' RealPlayer suffered multiple vulnerabilities while iTunes suffered from an MPEG4 file-processing overflow, SANS Institute said.®


TOPICS: Computers/Internet
KEYWORDS: opensource; redhat
Navigation: use the links below to view more comments.
first 1-2021-4041-6061-80 ... 101-110 next last

1 posted on 07/28/2005 10:08:42 AM PDT by N3WBI3
[ Post Reply | Private Reply | View Replies]

To: ShadowAce; N3WBI3; Tribune7; frogjerk; Salo; LTCJ; Calvinist_Dark_Lord; Buck W.; clyde asbury; ...

OSS PING

If you are interested in a new OSS ping list please mail me

2 posted on 07/28/2005 10:09:10 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 1 | View Replies]

Comment #3 Removed by Moderator

To: William Creel

IM going to start the RHCA track next year, it will take considerabbly longer then the rhce..


4 posted on 07/28/2005 10:11:42 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 3 | View Replies]

Comment #5 Removed by Moderator

To: N3WBI3
File this one under: Really! I'm SHOCKED!
6 posted on 07/28/2005 10:13:34 AM PDT by clee1 (We use 43 muscles to frown, 17 to smile, and 2 to pull a trigger. I'm lazy and I'm tired of smiling.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: N3WBI3

All OSes suck, NONE of them are secure.


7 posted on 07/28/2005 10:14:32 AM PDT by Echo Talon (http://echotalon.blogspot.com)
[ Post Reply | Private Reply | To 1 | View Replies]

To: N3WBI3
I question the timing of this study.  =)
8 posted on 07/28/2005 10:16:43 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires)
[ Post Reply | Private Reply | To 2 | View Replies]

To: N3WBI3
SANS Institute said this quarter's six most critical vulnerabilities affected Internet Explorer (IE), Exchange Server, Windows Message Queuing Server, Windows SMB protocol processing, Windows HTML help file parsing and Windows shell remote code execution.

I'm...I'm shocked. Usually Microsoft's malware is the entire Top 20 critical vulnerabilities!   ;o)

9 posted on 07/28/2005 10:19:00 AM PDT by Prime Choice (Thanks to the Leftists, yesterday's deviants are today's "alternate lifestyles.")
[ Post Reply | Private Reply | To 1 | View Replies]

To: Echo Talon
All OSes suck, NONE of them are secure.

Some are more secure than others (OpenBSD, SELinux, Bastille Linux, et al).

Many are secure enough (Red Hat, Slackware, FreeBSD, Debian).

...but all are more secure than Windows.

10 posted on 07/28/2005 10:21:39 AM PDT by Prime Choice (Thanks to the Leftists, yesterday's deviants are today's "alternate lifestyles.")
[ Post Reply | Private Reply | To 7 | View Replies]

To: softwarecreator; All

translation
"You have open kernel source in which anyone can really update it on a fly; if they choose too: once certain permissions are granted; or rather you log in as root or use -s to have root permissions etc... and you will tell me this system is safe. Let’s get reality check; none of OS is without its limits; none. Such a thing doesn’t exist. Should I go deeper with Red Hot Enterprise Server built on same kernel which is nothing but a rip off; after all it’s Linux. Point neither OS is secure neither network is secure."end translation



thank you


11 posted on 07/28/2005 10:26:46 AM PDT by anonymoussierra (Nie b¹dŸ pochopny w duchu do gniewu, bo gniew przebywa w piersi g³upców)
[ Post Reply | Private Reply | To 8 | View Replies]

To: William Creel

"I own stock in Red Hat."

I wish I did. I was neighbors up in Canada with Bob Young, founder of Red Hat. I have a picture of him sitting next to me at my fourth birthday party.He was a dorky kid with glasses , known for his awkwardness in social situations and for saying insensitive things. No one back then considered him particularly bright. Everyone thought his older brother would do well, but no one predicted Bob would.


12 posted on 07/28/2005 10:29:48 AM PDT by somerville
[ Post Reply | Private Reply | To 3 | View Replies]

To: William Creel

Yea I finished the RHCE last october.. It was nice in that its on compact exam unlike the A which is I think five exams..


13 posted on 07/28/2005 10:30:25 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 5 | View Replies]

To: softwarecreator

Yuoll have to take that up with your masters at redmond ;)


14 posted on 07/28/2005 10:31:07 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 8 | View Replies]

To: N3WBI3
We can't ... they are mythical godz and humble lemmings, like me, are not allowed to bask into the glory and wonder that is Micro$oft.

Some day, though, some day.

15 posted on 07/28/2005 10:36:12 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires)
[ Post Reply | Private Reply | To 14 | View Replies]

To: softwarecreator

Go to china and join the communist party... only then will MS deem you worthy of viewing 97% of their code..


16 posted on 07/28/2005 10:40:27 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 15 | View Replies]

To: N3WBI3
Go to china and join the communist party...

Why do I need to go all the way to China just to join the communist party?  I could stay here and join the Democratics ... same result.

17 posted on 07/28/2005 10:42:21 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires)
[ Post Reply | Private Reply | To 16 | View Replies]

To: softwarecreator

lol, but MS does not give American comm... err Democrats 97% of the code..


18 posted on 07/28/2005 10:44:01 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 17 | View Replies]

To: N3WBI3

Let me finish this thread:

Linux isn't ready for prime time.
Windows/Bill Gates/Microsoft is the devil.
Get a Mac.
Mac only has .00001% of the market.

Did I miss anything?


19 posted on 07/28/2005 10:45:01 AM PDT by Poser (Willing to fight for oil)
[ Post Reply | Private Reply | To 2 | View Replies]

To: N3WBI3
Yeah, but if I was a Democrat, I wouldn't need Microsoft because I would automatically become a Linux zealot by default.

No slamming guys/gals, just kidding.  =)

20 posted on 07/28/2005 10:47:21 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires)
[ Post Reply | Private Reply | To 18 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-4041-6061-80 ... 101-110 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson