[ Thanks to Jason
Greenwood for this link. ]
“On the first anniversary of Microsoft’s ‘trustworthy computing’
initiative, the spotlight has gone on security of open source
software.“The issue arises after the discovery last month of a serious
vulnerability in CVS (concurrent versions system), a Linux and Unix
development tool.“The US-based CERT alert service noted that CVS servers could be
accessed by unauthorised users and used to execute arbitrary code
via a set of directory requests that could free a memory
reference…”