[00:12] ersi: shopping? [00:14] "The vulnerability can only be exploited if the HTTP server follows a fairly obscure part of the CGI spec. Apache does this, but many other servers do not." [00:24] yipdw: i think the "we use -d" comment meant they used it within some config file or script file, not that they are trying to pass it through the web interface, and the commit message suggests the person was not aware of section 4.4 of the CGI RFC [00:26] Who the hell uses Apache with PHP using CGI? [00:29] nitro2k01: You see it moderately frequently in shared web hosting. Until yesterday. People with old sites that they haven't changed a thing on for years. [00:30] nitro2k01: anyone that wants to do something like a suexec wrapper between the webserver and php in a multi-user environment? [00:31] (changing user to the owner of that site or file before running the php) [00:32] Wait, does this affect suPHP, as well? [00:32] I figured that would be out of scope as a different implementation from DSO [00:38] i don't know [00:38] apache would still be passing the params [00:39] the question is if the called aommand ignores them [00:39] *command [04:44] SketchCow: linux format has torrents for its cover discs now [04:57] Excellent. [04:58] I'd like a link. [04:58] http://linuxformat.com/archives [04:58] also there is a torrent of most if not all pdfs on linuxformat.com [04:59] http://thepiratebay.se/torrent/7085430/Linux_Format_Magazine_-_issues_66_---_156%28apr-2012%29 [05:00] the april 2012 maybe a normal pirate pdf of linux format [05:04] the torrents got to issue 121 [05:04] *go to issue 121 [05:08] you may not get all torrents [05:09] since i don't know know which ones are still seeding [05:09] the ones in 150s and 140s should be mostly like still alive [06:57] hmm, joyent cloud [06:57] "No Charge For Data Transfer Up To 20TB Per Month Per Account." [07:05] error 4 from wget :S [07:06] This was last night, trying again now [07:09] Seems fine now... [07:10] 4 [07:10] Network failure. [07:12] blurp. [07:45] http://www.vice.com/en_uk/read/im-sick-of-pretending-i-dont-get-art [07:57] "She must have been researching a piece about the devolution of art from this: (John Martin's The Destruction of Sodom and Gomorrah) To this: (neon sign saying "MY CUNT IS WET WITH FEAR")" [08:15] mmm [08:15] http://www.kickstarter.com/projects/processblue/the-lost-films-of-herschell-gordon-lewis-restorati [08:48] anyone else get error 7, protocol errors? [08:50] Is it safe to remove the uploaded fol- of course it is [08:50] ...is it? [09:30] NotGLaDOS: I think so, the seesaw script seems to delete it. [14:02] shaqfu: how did it turn out at your end? :) [14:07] Hey. [14:07] hi [14:07] http://jsmess.textfiles.com/v0.5 [14:07] Duuuuuuuuuuuuuuude [14:13] i am not making the mistake of opening another bulky JS emulator while running knoppix [14:14] jsdosbox caused the system to become unresponsive until iceweasel finally died or was oom-killed [14:14] WHat could go wrrroooooooooooooong [14:15] would be nice to have a popup warning of the js crash that is probable [14:23] man, I hope it's cooler tomorrow than it has been the past two days [14:24] being in a suit all day outside will not be fun if it is [14:24] (yay steampunk wedding) [14:26] Coderjoe: Steampunk wedding? That's awesome! [14:29] oh jamendo. trying to view album pages of albums that have many tracks -> server error [14:49] Yeah, that puppy's sick. [14:58] shaqfu: i am doing fileplanet 25001 to 40000 [15:01] whould make more sense to do 000 to 999 actually :D [15:04] also doing 40000 - 49999 [16:08] just tried on and picked up the monkey suit [16:08] (which was rented from a costume shop, rather than a formalwear place) [16:09] I really hope it is somewhat cool tomorrow... I was sweating in the thing trying it on in the store. [16:10] suit, vest, hat... [16:20] (i'm a groomsman, not the groom) [16:27] SketchCow: I'm getting a bad error on twit-podcasts page: http://archive.org/details/twit-podcasts [16:27] Unknown err: XMLReader::read(): /usr/local/petabox/www/sf/:102: parser error : PCDATA invalid Char value 8 [/usr/local/petabox/www/common/Metadata.inc:1335] [16:28] i need be able to fix the metadata of this week in fun and abby's road to fix this [16:39] http://statusboard.archive.org/ seems down [19:07] dammit [19:08] why won't this shit auto-reconnect? [19:15] someone want to pull a copy of today's front page on beastieboys.com? :( [20:10] Coderjoe: It's at http://jasonfleshman.org/tmp/beastieboys.com-20120504.warc.gz if someone wants to put it in IA. [20:24] Schbirid: I'm throwing in the towel; it took me 8 hours to get 5k early pages :(