Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 14 Jul 2000 19:29:27 -0600 (MDT)
From:      "Jonathan M. Slivko" <jslivko@simphost.com>
To:        Matt Heckaman <matt@ARPA.MAIL.NET>
Cc:        FreeBSD Security <freebsd_security@hotmail.com>, FreeBSD-SECURITY <freebsd-security@freebsd.org>
Subject:   Re: FreeBSD User Security Advisory: FreeBSD-SA-00:BG
Message-ID:  <Pine.BSF.4.21.0007141929220.15220-100000@alpha.simphost.com>
In-Reply-To: <Pine.BSF.4.21.0007142120450.76661-100000@epsilon.lucida.qc.ca>

next in thread | previous in thread | raw e-mail | index | archive | help
I FULLY AGREE!

________________________________________________
Jonathan M. Slivko <jslivko@simphost.com>
Technical Support: Simple Hosting Solutions
Website: http://www.simphost.com, check us out!

"The statements I make are not the statements 
of my employer!" -- Jonathan M. Slivko
________________________________________________

On Fri, 14 Jul 2000, Matt Heckaman wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> For someone claiming to be bitching about ... this very thing, you seem to
> do a good job propagating it yourself. This is beyond immature, hiding
> behind a hotmail account is rather lame as well. Are you not confident
> enough in your convictions to speak of them publically without being an
> anonymous coward? Grow up, you certaintly aren't making your case.
> 
> This has just hit an all new low.
> 
> On Fri, 14 Jul 2000, FreeBSD Security wrote:
> 
> : Date: Fri, 14 Jul 2000 21:14:00 -0400
> : From: FreeBSD Security <freebsd_security@hotmail.com>
> : To: freebsd-security@freebsd.org
> : Subject: FreeBSD User Security Advisory: FreeBSD-SA-00:BG
> : 
> : -----BEGIN PGP SIGNED MESSAGE-----
> : 
> : =============================================================================
> : FreeBSD-SA-00:BG                                           Security Advisory
> :                                                                 FreeBSD, 
> : Inc.
> : 
> : Topic:          The Brett Glass user can DOS the FreeBSD mailing lists.
> : 
> : Category:       user
> : Module:         Brett Glass
> : Announced:      2000-07-14
> : Affects:        Mailing lists
> : Corrected:      2000-07-14
> : Vendor status:  Patch released
> : FreeBSD only:   Yes
> : 
> : I.   Background
> : 
> : The Brett Glass user is an active participant in various FreeBSD
> : mailing lists.
> : 
> : II.  Problem Description
> : 
> : The FreeBSD mailing lists are a vital part of the FreeBSD community
> : and are the primary means by which many users obtain support and
> : exchange important information.
> : 
> : A mailing list participant named Brett Glass has been in recent
> : weeks posting crack smoking ideas to the lists generating a lot of
> : noise and rendering the mailing lists next to useless as a means
> : of obtaining support and exchanging information.  In other words,
> : causing a Denial Of Service.
> : 
> : The Brett Glass user is not installed by default, nor is it "part
> : of FreeBSD" as such: it is part of the FreeBSD mailing lists, which
> : are a publicly available resource.
> : 
> : FreeBSD makes no claim about the benefits of having certain users
> : participate in the mailing list discussions.
> : 
> : Note, Linux mailing lists are thought not to be vulnerable due to
> : the license under which Linux is covered.  The Brett Glass user
> : seems to avoid software distributed under the GPL.
> : 
> : III. Impact
> : 
> : Posts from the Brett Glass user can cause readers to miss vital
> : information contained in some posts.  It also has the effect of
> : driving away some of the critical participants in the mailing lists.
> : 
> : IV.  Workaround
> : 
> : Use your mail reader, or procmail, to filter all posts from the Brett
> : Glass user.
> : 
> : V.   Solution
> : 
> : Add the following to your procmail filter:
> : 
> : :0
> : * ^From: brett@lariat\.org
> : /dev/null
> : 
> : -----BEGIN PGP SIGNATURE-----
> : Version: 2.6.2
> : 
> : iQCVAwUBOW+p97KP7aiUpF5FAQGy3AP/UEfoMb6C6IjUnXPe6prdSDMzOTlqcmYA
> : vquAomCIfTLbGaFkWsZL64xXSE0mfs5/X8LoubBi75RhnQ/TMYvE9GTMDIuUn6As
> : lI3lL0wiQoAr0TX2R6TiPMvQK7JisvcoYr9NUWkXG8BuwZ1c+RKBgzgEseVP4UU/
> : y3lsjiEL3F0=
> : =daPy
> : -----END PGP SIGNATURE-----
> : 
> : ________________________________________________________________________
> : Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com
> : 
> : 
> : 
> : To Unsubscribe: send mail to majordomo@FreeBSD.org
> : with "unsubscribe freebsd-security" in the body of the message
> : 
> 
> * Matt Heckaman   - mailto:matt@lucida.qc.ca  http://www.lucida.qc.ca/ *
> * GPG fingerprint - A9BC F3A8 278E 22F2 9BDA  BFCF 74C3 2D31 C035 5390 *
> 
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.0.1 (FreeBSD)
> Comment: http://www.lucida.qc.ca/pgp
> 
> iD8DBQE5b70/dMMtMcA1U5ARAl2gAJ9isTPusqos/x09M6zs9D65gW5KIACg0ioI
> QXJ85Mm3oBJfsQQP89B+0A0=
> =S1YE
> -----END PGP SIGNATURE-----
> 
> 
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message
> 



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0007141929220.15220-100000>