From owner-freebsd-questions Sat Sep 8 15:28:13 2001 Delivered-To: freebsd-questions@freebsd.org Received: from obsecurity.dyndns.org (adsl-63-207-60-54.dsl.lsan03.pacbell.net [63.207.60.54]) by hub.freebsd.org (Postfix) with ESMTP id 1AF7F37B407 for ; Sat, 8 Sep 2001 15:28:11 -0700 (PDT) Received: by obsecurity.dyndns.org (Postfix, from userid 1000) id B71A866D24; Sat, 8 Sep 2001 15:28:10 -0700 (PDT) Date: Sat, 8 Sep 2001 15:28:10 -0700 From: Kris Kennaway To: Salvo Bartolotta Cc: future , freebsd-questions@FreeBSD.ORG Subject: Re: rpc.statd Message-ID: <20010908152810.A72780@xor.obsecurity.org> References: <999972950.3b9a60562b2bb@webmail.neomedia.it> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-md5; protocol="application/pgp-signature"; boundary="opJtzjQTFsWo+cga" Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <999972950.3b9a60562b2bb@webmail.neomedia.it>; from bartequi@neomedia.it on Sat, Sep 08, 2001 at 08:15:50PM +0200 Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG --opJtzjQTFsWo+cga Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Sat, Sep 08, 2001 at 08:15:50PM +0200, Salvo Bartolotta wrote: > IIRC (past advisories, posts, etc), FreeBSD 4.3 and later should NOT be= =20 > vulnerable to this kind of attack. You may wish to check the archives (fo= r=20 > advisories and other relevant material) to see if **your** version of Fre= eBSD=20 > is somehow exploitable. No versions of FreeBSD were ever effected. It was a vulnerability introduced by Linnex. Kris --opJtzjQTFsWo+cga Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (FreeBSD) Comment: For info see http://www.gnupg.org iD8DBQE7mpt6Wry0BWjoQKURAoD3AJ95x6agpXzrleu7Pv3L7qtdhkSTDQCgybZk nxjHypMxvOv07ZbpOUJomKk= =+7EJ -----END PGP SIGNATURE----- --opJtzjQTFsWo+cga-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message