posted on September 11, 2000 05:33:01 PM new
Quit snickering, this is serious.
NEW SECURITY GAP FOUND IN NETSCAPE'S BROWSER
If you use the Netscape Web browser ("Communicator" ), you need to be aware that a Web site you visit can use Java programming to make your PC act like a Web server, displaying a directory listing of the files on your hard disk, and providing access to them. The flaw (called Brown Orifice Vulnerability) is not a major problem, because you must access a Web page deliberately designed with the malicious code, and that's not very likely. As of the date I'm writing this, Netscape was investigating the problem and planning to make a patch available, but if you use Netscape's browser and don't want to take any chances, you can protect yourself in the meantime by turning off Java. The company's Web site addresses how to do that, as well as other security issues that affect Communicator:
posted on September 11, 2000 06:21:04 PM new
No, Shelly, did not want to bug you. Wanted to make sure you were okay. Glad you are.
For future reference, you might appreciate knowing that emails from one [email protected] to another are headerless, like PMs. No IP disclosure. It was tested during a discussion in the MC among people who never miss an opportunity to show one another up, and they concurred on their findings. They also agreed that this could change in the future, if AW reconfigured their SW in some respect, but that's how it is now.
Which probably has as much meaning as a Communicator security warning to someone who doesn't use Netscape, but what the hay, my sapphire self is feeling helpy tonight.
posted on September 11, 2000 07:59:31 PM new
Pareau, Thank you for the warning. I always use Netscape and have always felt smug as it seemed IE5 had all the problems! Wrong I guess!
ShellyHerr-I think -think - I know what Pareau was alluding to when the thread with your name was started. I could be wrong [and probably am] but if you want my take on it you can email me at my auctionwatch email and I will be happy to tell you what I think it meant.
posted on September 11, 2000 08:17:27 PM new
rawbunzel-can you recieve email to your auctionwatch email from any email, or does it have to be from another auctionwatch email address? was that a confusing ? or what?
posted on September 11, 2000 08:22:04 PM new
pareau sure ok, whatever, like I am supposed to know what PM 's mean? Ok I get the SW -SOFTWARE, why does everything you say really really ..... ok I won't go over any CG lines ya little sapphire
posted on September 11, 2000 08:31:09 PM new
Shelly, I can get mail from everywhere!It is just that if you use it user to user then there are no headers so it is like PM [private messaging].
posted on September 11, 2000 09:13:03 PM new
Hi Rawbunzel, if you want you can tell him what you said, and if its the same.... DANG !!!!! LOL! not using you as a middleperson here! LOL! but it seems like it, sorry!
posted on September 11, 2000 09:20:23 PM new
Rawbunzel, you're great! I will email you in a bit with my explanation, or you can email me with your thoughts, and either way, we'll get as clear as you can with me in the middle, and thanks very much for pulling this together!
posted on September 11, 2000 10:28:57 PM new
Hi, I am back and have logged on, but no emails. I checked my preferences, and they're set to receive from "myauctionwatch.com" addresses, so I don't know why I'm not getting the mail.
Two ideas: I will add you to my addressbook, rawbunzel, JIC, and mention that I am lower-case "pareau," not "Pareau" (I think it makes a difference with the mail).
I sure am glad to see Shelly laughing. That's a relief!
posted on September 11, 2000 10:30:58 PM new
pareau, why don't you write to me and then I can just hit reply! I am sure I used lower case for your email address.
posted on September 11, 2000 10:34:08 PM new
Okay, rawbunzel. I will do the completely abbreviated version of my concern, and we'll go from there. Just a few minutes....