Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 3 Jul 2002 20:02:34 +0400
From:      ark@eltex.ru
To:        mike@sentex.net
Cc:        security@freebsd.org
Subject:   Re: Fwd: NEC's socks5 (Re: Foundstone Advisory - Buffer Overflow  in AnalogX Pro
Message-ID:  <200207031602.UAA03991@paranoid.eltex.ru>
In-Reply-To: <5.1.0.14.0.20020703114631.04f94d20@marble.sentex.ca> from "Mike Tancsa <mike@sentex.net>"

next in thread | previous in thread | raw e-mail | index | archive | help
-----BEGIN PGP SIGNED MESSAGE-----

I think it is because of icmp extentions (can't remember if remote socket is
allowed to bind privileged port but that may be a reason too)

Mike Tancsa <mike@sentex.net> said :
 
> Has anyone run the socks5 daemon below as a chrooted and non privileged 
> user ?  It binds to 1080, is there any reason it needs to even run as root ?

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: PGP 6.5.1i

iQCVAwUBPSMgGaH/mIJW9LeBAQE4qgP6AwE9zy+duCZyf6zQa/EwyXycr0OxGGgv
OhZSCXSgpXmCCSwbEhjSaimLVgcn9KYCdWAkaHAS51euqwh/l43bsXItkhiSiOmy
B7P1t7iA7HVyhEcGksZ3ucEvSSXGf1ftnORbypPiNd8wdNp6KWPUCGEWfAgx0/l9
vMBEwXs3KrA=
=7QLi
-----END PGP SIGNATURE-----

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200207031602.UAA03991>