[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [SAGE] Re: [lopsa-tech] Remote Exploit Solaris telnetd



On Mon, 2007-02-12 at 10:22 -0800, Michael T. Halligan wrote:
> 1989 called and they want their insecure, obsolete protocol back.

Dang, and I thought it was just IBM:

http://preview.tinyurl.com/2narfr

..
I.  Description
===============

A buffer overflow vulnerability in various r-commands may allow a local
user to gain root privileges. This vulnerability may be exploited through
the rsh, rcp, rlogin and rdist commands. These commands are used to provide
remote access to a system.
..

For an additional hoot:

http://preview.tinyurl.com/393sm7

"This prints the byte count for each group line. makedbm will fail on
most entries greater than 1000 bytes and vi fails on lines greater than
2048."

Operating system(s):    AIX  
Software version:    4.3, 5.1, 5.2, 5.3

1989 called and they want their fixed-length buffers and arbitrary size
limitations back!

Wil
-- 
Wil Cooley <wcooley@nakedape.cc>
http://nakedape.cc

This is a digitally signed message part