Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 17 Nov 1996 21:16:45 +1100 (EST)
From:      Julian Assange <proff@suburbia.net>
To:        spork@super-g.com (S)
Cc:        hackers@freebsd.org
Subject:   Re: New sendmail bug...
Message-ID:  <199611171016.VAA17864@suburbia.net>
In-Reply-To: <Pine.LNX.3.92.961116165903.12931A-100000@super-g.inch.com> from "S" at Nov 16, 96 05:03:13 pm

next in thread | previous in thread | raw e-mail | index | archive | help
> 
> It's nasty and easy...  If you're on Bugtraq, you saw it.  If anyone with
> more knowledge on this issue can check it out, please post to the list so
> everyone can free themselves of this vulnerability.  Root in under 15
> seconds with an account on the machine.  If you need the 'sploit, please
> mail me here and I'll send it to you.  I verified it on FBSD, NetBSD,
> Linux so far...
> 
> TIA
> 
> Charles
> 

The bug is platform independent. See the BOS archives for fixes.


-- 
"Of all tyrannies a tyranny sincerely  exercised for the good of its victims  
 may be the most  oppressive.  It may be better to live under  robber barons  
 than  under  omnipotent  moral busybodies,  The robber baron's  cruelty may  
 sometimes sleep,  his cupidity may at some point be satiated; but those who  
 torment us for own good  will torment us  without end,  for they do so with 
 the approval of their own conscience."    -   C.S. Lewis, _God in the Dock_ 
+---------------------+--------------------+----------------------------------+
|Julian Assange RSO   | PO Box 2031 BARKER | Secret Analytic Guy Union        |
|proff@suburbia.net   | VIC 3122 AUSTRALIA | finger for PGP key hash ID =     |
|proff@gnu.ai.mit.edu | FAX +61-3-98199066 | C7F81C2AA32D7D4E4D360A2ED2098E0D |
+---------------------+--------------------+----------------------------------+



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199611171016.VAA17864>