Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 22 Nov 1996 01:47:27 -0800
From:      Paul Traina <pst@shockwave.com>
To:        cschuber@uumail.gov.bc.ca
Cc:        security-officer@freebsd.org, freebsd-security@freebsd.org
Subject:   Re: Futile rexecd holes 
Message-ID:  <199611220947.BAA05167@precipice.shockwave.com>
In-Reply-To: Your message of "Tue, 19 Nov 1996 07:53:27 PST." <199611191553.HAA00979@cwsys.cwent.com> 

next in thread | previous in thread | raw e-mail | index | archive | help
After some careful analysis of the rexec/rshd "holes" mentioned in the
message,  I'm convinced there are no security holes that actually need
fixing.

Both exploits, even with tcp spoofing, give you nothing more than spoofing
directly would do.

Thanks for the notice though,

Paul



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199611220947.BAA05167>