Date: Fri, 14 Jul 2000 19:29:27 -0600 (MDT) From: "Jonathan M. Slivko" <jslivko@simphost.com> To: Matt Heckaman <matt@ARPA.MAIL.NET> Cc: FreeBSD Security <freebsd_security@hotmail.com>, FreeBSD-SECURITY <freebsd-security@freebsd.org> Subject: Re: FreeBSD User Security Advisory: FreeBSD-SA-00:BG Message-ID: <Pine.BSF.4.21.0007141929220.15220-100000@alpha.simphost.com> In-Reply-To: <Pine.BSF.4.21.0007142120450.76661-100000@epsilon.lucida.qc.ca>
next in thread | previous in thread | raw e-mail | index | archive | help
I FULLY AGREE! ________________________________________________ Jonathan M. Slivko <jslivko@simphost.com> Technical Support: Simple Hosting Solutions Website: http://www.simphost.com, check us out! "The statements I make are not the statements of my employer!" -- Jonathan M. Slivko ________________________________________________ On Fri, 14 Jul 2000, Matt Heckaman wrote: > -----BEGIN PGP SIGNED MESSAGE----- > Hash: SHA1 > > For someone claiming to be bitching about ... this very thing, you seem to > do a good job propagating it yourself. This is beyond immature, hiding > behind a hotmail account is rather lame as well. Are you not confident > enough in your convictions to speak of them publically without being an > anonymous coward? Grow up, you certaintly aren't making your case. > > This has just hit an all new low. > > On Fri, 14 Jul 2000, FreeBSD Security wrote: > > : Date: Fri, 14 Jul 2000 21:14:00 -0400 > : From: FreeBSD Security <freebsd_security@hotmail.com> > : To: freebsd-security@freebsd.org > : Subject: FreeBSD User Security Advisory: FreeBSD-SA-00:BG > : > : -----BEGIN PGP SIGNED MESSAGE----- > : > : ============================================================================= > : FreeBSD-SA-00:BG Security Advisory > : FreeBSD, > : Inc. > : > : Topic: The Brett Glass user can DOS the FreeBSD mailing lists. > : > : Category: user > : Module: Brett Glass > : Announced: 2000-07-14 > : Affects: Mailing lists > : Corrected: 2000-07-14 > : Vendor status: Patch released > : FreeBSD only: Yes > : > : I. Background > : > : The Brett Glass user is an active participant in various FreeBSD > : mailing lists. > : > : II. Problem Description > : > : The FreeBSD mailing lists are a vital part of the FreeBSD community > : and are the primary means by which many users obtain support and > : exchange important information. > : > : A mailing list participant named Brett Glass has been in recent > : weeks posting crack smoking ideas to the lists generating a lot of > : noise and rendering the mailing lists next to useless as a means > : of obtaining support and exchanging information. In other words, > : causing a Denial Of Service. > : > : The Brett Glass user is not installed by default, nor is it "part > : of FreeBSD" as such: it is part of the FreeBSD mailing lists, which > : are a publicly available resource. > : > : FreeBSD makes no claim about the benefits of having certain users > : participate in the mailing list discussions. > : > : Note, Linux mailing lists are thought not to be vulnerable due to > : the license under which Linux is covered. The Brett Glass user > : seems to avoid software distributed under the GPL. > : > : III. Impact > : > : Posts from the Brett Glass user can cause readers to miss vital > : information contained in some posts. It also has the effect of > : driving away some of the critical participants in the mailing lists. > : > : IV. Workaround > : > : Use your mail reader, or procmail, to filter all posts from the Brett > : Glass user. > : > : V. Solution > : > : Add the following to your procmail filter: > : > : :0 > : * ^From: brett@lariat\.org > : /dev/null > : > : -----BEGIN PGP SIGNATURE----- > : Version: 2.6.2 > : > : iQCVAwUBOW+p97KP7aiUpF5FAQGy3AP/UEfoMb6C6IjUnXPe6prdSDMzOTlqcmYA > : vquAomCIfTLbGaFkWsZL64xXSE0mfs5/X8LoubBi75RhnQ/TMYvE9GTMDIuUn6As > : lI3lL0wiQoAr0TX2R6TiPMvQK7JisvcoYr9NUWkXG8BuwZ1c+RKBgzgEseVP4UU/ > : y3lsjiEL3F0= > : =daPy > : -----END PGP SIGNATURE----- > : > : ________________________________________________________________________ > : Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com > : > : > : > : To Unsubscribe: send mail to majordomo@FreeBSD.org > : with "unsubscribe freebsd-security" in the body of the message > : > > * Matt Heckaman - mailto:matt@lucida.qc.ca http://www.lucida.qc.ca/ * > * GPG fingerprint - A9BC F3A8 278E 22F2 9BDA BFCF 74C3 2D31 C035 5390 * > > -----BEGIN PGP SIGNATURE----- > Version: GnuPG v1.0.1 (FreeBSD) > Comment: http://www.lucida.qc.ca/pgp > > iD8DBQE5b70/dMMtMcA1U5ARAl2gAJ9isTPusqos/x09M6zs9D65gW5KIACg0ioI > QXJ85Mm3oBJfsQQP89B+0A0= > =S1YE > -----END PGP SIGNATURE----- > > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-security" in the body of the message > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0007141929220.15220-100000>