Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 19 Jul 1998 11:09:40 -0600
From:      Brett Glass <brett@lariat.org>
To:        security@FreeBSD.ORG
Subject:   Why is there no info on the QPOPPER hack?
Message-ID:  <199807191709.LAA28734@lariat.lariat.org>

next in thread | raw e-mail | index | archive | help
Our system has been penetrated via a buffer overflow exploit in Qualcomm's
QPOPPER, as obtained from the FreeBSD ports library. But there's no
advisory about this on FreeBSD's site.... In fact, we learned of the
exploit only because the cracker was sloppy.

We need advice on resecuring the system and preventing future incidents of
this kind. CERT has been utterly unresponsive; they seem to have ignored
our two e-mails asking for help. Any help we can get from members of the
FreeBSD community would be MUCH appreciated.

--Brett Glass


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199807191709.LAA28734>