From owner-freebsd-security Mon Jan 6 22:13:31 2003 Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id B913237B401; Mon, 6 Jan 2003 22:13:29 -0800 (PST) Received: from spork.pantherdragon.org (spork.pantherdragon.org [206.29.168.146]) by mx1.FreeBSD.org (Postfix) with ESMTP id 29EC843E4A; Mon, 6 Jan 2003 22:13:29 -0800 (PST) (envelope-from dmp@pantherdragon.org) Received: from sparx.techno.pagans (12-224-208-117.client.attbi.com [12.224.208.117]) by spork.pantherdragon.org (Postfix) with ESMTP id 2719310138; Mon, 6 Jan 2003 22:13:22 -0800 (PST) Received: from pantherdragon.org (speck.techno.pagans [172.21.42.2]) by sparx.techno.pagans (Postfix) with ESMTP id A11BAAA8F; Mon, 6 Jan 2003 22:13:20 -0800 (PST) Message-ID: <3E1A7000.20308@pantherdragon.org> Date: Mon, 06 Jan 2003 22:13:20 -0800 From: Darren Pilgrim User-Agent: Mozilla/5.0 (Windows; U; Win98; en-US; rv:1.1) Gecko/20020826 X-Accept-Language: en-us, en MIME-Version: 1.0 To: phk@freebsd.org Cc: Mike Tancsa , freebsd-security@freebsd.org Subject: Re: Fwd: OPENSSH REMOTE ROOT COMPROMISE ALL VERSIONS References: <24337.1041889079@critter.freebsd.dk> Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org phk@freebsd.org wrote: > In message <3E19F4B0.3090903@pantherdragon.org>, Darren Pilgrim writes: >>Mike Tancsa wrote: >> >>>FYI, for those not on bugtraq. >> >>The "advisory" is suspect. >> >>1) The language used in the non-technical parts of the message are >>immature, detracting from the credibility of the author. > > If you were a bank-teller, would you ignore a bank-robber with a > gun because he spoke baby-language ? I probably wouldn't :-) Granted, I wouldn't ignore him, but I would have a hard time filling his bag between fits of histerics. Besides, I'm a netadmin, so I'd be either a security guard or on the loan commitee. I don't do sales. :) To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message