IT NEWS            Site directors hint: Stay up to date Discuss now!
Technology news and Jobs arrow Information Technology News arrow Eee PC vulnerable, say researchers
Eee PC vulnerable, say researchers PDF E-mail
User Rating: / 3
PoorBest 
by Stephen Withers   
Tuesday, 12 February 2008
Security researchers have warned that the Asus Eee PC is vulnerable to attack by hackers.

According to Brazil-based RISE Security, the Eee PC ships with a version of Samba that includes an exploitable heap-overflow vulnerability discovered in the middle of 2007.

Furthermore, Samba is loaded by default on the Eee PC and a known exploit for the flaw can be used to gain root access to the subnotebook.

The popular Asus Eee PC sub-notebook, which was released in October last year, is now the world's best selling Linux computer, Asus having sold more than 300,000 in 2007. The wireless capable Eee PC runs a version of the Xandros Linux distribution and comes preloaded with a number of open source and free proprietary applications such as OpenOffice.org and Skype. The Eee part of the name is meant to signify that the portable computer with a 7-inch screen, 512MB RAM and 2GB of Flash storage is "Easy to work, Easy to learn and Easy to play."

However, as RISE puts it: "Easy to learn, Easy to work, Easy to root."

Fraser Howard, principal virus researcher at Sophos, said it was not surprising that a vulnerability had been found, but the issue "is less about any inherent weakness or flaw with the Eee PC, and more about the dangers of how users perceive technology. Simple technology requires simple security, which in this case means having an update mechanism that 'just works'."

Samba is an open-source implementation of the SMB/CIFS protocol, allowing computers running operating systems such as Linux to provide file and print services to Windows PCs.

The current release (3.0.28) does not have the flaw discussed above, and can be downloaded from samba.org.

Please enable JavaScript in your browser to post your comment!


Get stories like this delivered daily - FREE - subscribe now
 
< Next story in category   Previous story in the category >
Subscribe to iTWire's Free daily e-newsletter Delivered daily - FREE
Subscribe to our Technology newsletter, get the latest and stay ahead ...example
* First name:
* Last name:
* Your email address:
* Country:
* Enter the security code shown:

* mandatory


Search the web
Search iTWire

 
You don't need to login to post a comment





Lost Password?
No account yet? Register
Subscribe to our free daily newsletter.
Six Sigma Green Belt Training and Certification Workshop
July 4 (9:00 am) - July 06 (11:59 pm), 2008
eXample Consulting Group is conducting an immensely practical SIX SIGMA GREEN BELT CERTIFICATION ...

Ovum Breakfast Seminar: Telco 2.0 in the UC battleground
July 7, 2008 (7:30 am - 10:00 am)
Ovum would like to invite you to our forthcoming event on July 7, at which we will be discussing ...

Oceania Com
July 7 (8:45 am) - July 08 (11:59 pm), 2008
Informa Telecoms & Media and BuddeComm are delighted to announce the inaugural OCEANIACOM 7-8 J...

Energy Logic Symposium- Melbourne
July 8, 2008 (All Day)
Emerson Network Power, Dell, IBM and Cisco show you how to slash data centre energy use without c...

Financial Modelling in Excel - Brisbane CBD
July 9, 2008 (All Day)
Improve your decision making and business skills by learning to create your own dynamic and relia...

Budgeting & Forecasting in Excel - Brisbane CBD
July 10 (9:00 am) - July 11 (11:59 pm), 2008
Learn to create your own budgets, rolling forecasts, reports and scenarios. Explore budgeting te...

SIX SIGMA WORKSHOP - Bangalore
July 11 (9:00 am) - July 13 (11:59 pm), 2008
eXample Consulting Group is conducting an immensely practical SIX SIGMA GREEN BELT CERTIFICATION ...

KM Australia 2008
July 21 (8:00 am) - July 22 (11:59 pm), 2008
Web Linkwww.kmaustralia.com Moving forward with an enterprise approach to knowledge, information...

Usability Fundamentals Training Course [Melbourne]
July 21 (9:00 am) - July 22 (11:59 pm), 2008
The success of your website is inextricably linked to how well-versed those involved in the devel...

ISTQB Foundation Certification Course
July 22 (9:00 am) - July 23 (11:59 pm), 2008
This accredited and instructor-led course focuses on developing the student’s knowledge, understa...
New event listings
SolidWorks Innovation Day (Melbourne and Adelaide)
October 17, 2008 (All Day)
Hosted by Intercad, SolidWorks’ Innovation Days will give designers, engineers and manufacturers ...

SolidWorks Innovation Day (Sydney)
October 16, 2008 (All Day)
Hosted by Intercad, SolidWorks’ Innovation Days will give designers, engineers and manufacturers ...

SolidWorks Innovation Day (Brisbane and Perth)
October 15, 2008 (All Day)
Hosted by Intercad, SolidWorks’ Innovation Days will give designers, engineers and manufacturers ...

LIXI Industry Forum 2008
September 10, 2008 (All Day)
Wednesday, 10 September 2008 The Westin Sydney The second annual major industry event for the...

Last Day to apply for Mid Year study at Swinburne University
August 1, 2008 (All Day)
Applications close for Swinburne University’s online postgraduate Technical Communication courses.

The Rapidly Emerging Mobile Media Market
July 24, 2008 (All Day)
Mobile media is the way of the future, and by 2015, it is expected that it will be the major reve...

View Full Calendar
Contact , Register , Advertise with iTWire , Links , About iTWire , Feedback , Post your jobs , Events , iTWire site map , Start Blogging , MyBlogLog page
Industry Releases , Submit your release now