Flaws found in BSD, Linux software updaters

The software update mechanisms used by most BSD and Linux operating systems can be tricked into installing buggy or known-to-be-compromised software on users' systems, creating serious security risks, according to new research.

The study Package Management Security, to be published in a forthcoming issue of the University of Arizona Tech Report, analysed 10 package managers and found that all were vulnerable to exploits, allowing attackers to install unsafe software on target systems.

Read the whole article here: http://news.zdnet.co.uk/security/0,1000000189,39446765,00.htm