<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>security hole | Matt Crawford</title>
	<atom:link href="https://mattcrawford.me/tag/security-hole/feed/" rel="self" type="application/rss+xml" />
	<link>https://mattcrawford.me</link>
	<description>Handyman &#124; Geek &#124; YouTuber</description>
	<lastBuildDate>Tue, 14 Jun 2022 23:39:59 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>
<site xmlns="com-wordpress:feed-additions:1">176948450</site>	<item>
		<title>Ghost Linux Security hole Revealed</title>
		<link>https://mattcrawford.me/ghost-linux-security-hole-revealed/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=ghost-linux-security-hole-revealed</link>
					<comments>https://mattcrawford.me/ghost-linux-security-hole-revealed/#respond</comments>
		
		<dc:creator><![CDATA[Matt Crawford]]></dc:creator>
		<pubDate>Wed, 28 Jan 2015 18:43:40 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[ghost]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security hole]]></category>
		<guid isPermaLink="false">http://twist3d.net/?p=844</guid>

					<description><![CDATA[<p>Have you heard about the critical linux security hole that was revealed dubbed &#8220;Ghost&#8221;? Well if you haven&#8217;t then I suggest you get up to speed on this critical security hole and get your linux servers patched asap. The below section is quoted from the article at zdnet. &#8220;The security hole can be triggered by [&#8230;]</p>
The post <a href="https://mattcrawford.me/ghost-linux-security-hole-revealed/">Ghost Linux Security hole Revealed</a> first appeared on <a href="https://mattcrawford.me">Matt Crawford</a>.]]></description>
										<content:encoded><![CDATA[<p>Have you heard about the critical linux security hole that was revealed dubbed &#8220;Ghost&#8221;? Well if you haven&#8217;t then I suggest you get up to speed on this critical security hole and get your linux servers patched asap.</p>
<p>The below section is quoted from the article at <a href="http://www.zdnet.com/article/critical-linux-security-hole-found/">zdnet</a>.</p>
<p>&#8220;The security hole can be triggered by exploiting glibc&#8217;s&nbsp;<a href="http://www.gnu.org/software/libc/manual/html_node/Host-Names.html">gethostbyname functions</a>. This function is used on almost all networked Linux computers when the computer is called on to access another networked computer either by using the /etc/hosts files or, more commonly, by resolving an Internet domain name with Domain Name System (DNS).</p>
<p>To exploit this vulnerability, all an attacker needs to do is trigger a buffer overflow by using an invalid hostname argument to an application that performs a DNS resolution. This vulnerability then enables a remote attacker to execute arbitrary code with the permissions of the user running DNS. In short, once an attacker has exploited GHOST they may be capable of taking over the system.&#8221;</p>
<p>For more details please read the full article at <a href="http://www.zdnet.com/article/critical-linux-security-hole-found/">zdnet</a>.</p>The post <a href="https://mattcrawford.me/ghost-linux-security-hole-revealed/">Ghost Linux Security hole Revealed</a> first appeared on <a href="https://mattcrawford.me">Matt Crawford</a>.]]></content:encoded>
					
					<wfw:commentRss>https://mattcrawford.me/ghost-linux-security-hole-revealed/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">844</post-id>	</item>
	</channel>
</rss>
