From owner-freebsd-hackers Sun Nov 17 02:17:31 1996 Return-Path: owner-hackers Received: (from root@localhost) by freefall.freebsd.org (8.7.5/8.7.3) id CAA10243 for hackers-outgoing; Sun, 17 Nov 1996 02:17:31 -0800 (PST) Received: from pdx1.world.net (pdx1.world.net [192.243.32.18]) by freefall.freebsd.org (8.7.5/8.7.3) with ESMTP id CAA10236 for ; Sun, 17 Nov 1996 02:17:23 -0800 (PST) Received: from suburbia.net (suburbia.net [203.4.184.1]) by pdx1.world.net (8.7.5/8.7.3) with ESMTP id CAA18539; Sun, 17 Nov 1996 02:17:17 -0800 (PST) Received: (proff@localhost) by suburbia.net (8.7.4/Proff-950810) id VAA17864; Sun, 17 Nov 1996 21:16:46 +1100 From: Julian Assange Message-Id: <199611171016.VAA17864@suburbia.net> Subject: Re: New sendmail bug... To: spork@super-g.com (S) Date: Sun, 17 Nov 1996 21:16:45 +1100 (EST) Cc: hackers@freebsd.org In-Reply-To: from "S" at Nov 16, 96 05:03:13 pm X-Mailer: ELM [version 2.4 PL23] Content-Type: text Sender: owner-hackers@freebsd.org X-Loop: FreeBSD.org Precedence: bulk > > It's nasty and easy... If you're on Bugtraq, you saw it. If anyone with > more knowledge on this issue can check it out, please post to the list so > everyone can free themselves of this vulnerability. Root in under 15 > seconds with an account on the machine. If you need the 'sploit, please > mail me here and I'll send it to you. I verified it on FBSD, NetBSD, > Linux so far... > > TIA > > Charles > The bug is platform independent. See the BOS archives for fixes. -- "Of all tyrannies a tyranny sincerely exercised for the good of its victims may be the most oppressive. It may be better to live under robber barons than under omnipotent moral busybodies, The robber baron's cruelty may sometimes sleep, his cupidity may at some point be satiated; but those who torment us for own good will torment us without end, for they do so with the approval of their own conscience." - C.S. Lewis, _God in the Dock_ +---------------------+--------------------+----------------------------------+ |Julian Assange RSO | PO Box 2031 BARKER | Secret Analytic Guy Union | |proff@suburbia.net | VIC 3122 AUSTRALIA | finger for PGP key hash ID = | |proff@gnu.ai.mit.edu | FAX +61-3-98199066 | C7F81C2AA32D7D4E4D360A2ED2098E0D | +---------------------+--------------------+----------------------------------+