Telnet exploit & 3.4-RELEASE

From: bob (bob@antepenultimate.org)
Date: 07/25/01


Date: Wed, 25 Jul 2001 14:23:35 -0700 (PDT)
From: bob <bob@antepenultimate.org>
To: FreeBSD Security <freebsd-security@FreeBSD.ORG>

What is the best way for me to secure my 3.4-Release machine from the
recent telnetd exploit?

I don't have physical acces to the machine (its on the other coast) and I
don't have any of the cvsup packages installed. The packages and ports
seem to be unavailable for this release. I'd like to just upgrade through
source, but i'm not sure how to get the necessary packages.

--bob

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • Re: Telnet exploit & 3.4-RELEASE
    ... At 14:23 2001-07-25 -0700, bob wrote: ... >What is the best way for me to secure my 3.4-Release machine from the ... >recent telnetd exploit? ... >don't have any of the cvsup packages installed. ...
    (FreeBSD-Security)
  • [ESA-20011217-01] glibc globbing buffer overflow
    ... Guardian Digital recently made available the Guardian Digital Secure ... execute the command: ... To verify the signatures of the updated packages, ...
    (Bugtraq)
  • [ESA-20011019-01] Two apache vulnerabilities
    ... Subject: Two apache vulnerabilities ... Guardian Digital recently made available the Guardian Digital Secure ... To verify the signature of the updated packages, ...
    (Bugtraq)
  • [ESA-20020307-007] Local vulnerability in OpenSSHs channel code.
    ... EnGarde Secure Linux is a secure distribution of Linux that features ... execute the command: ... To verify the signatures of the updated packages, ... These updated packages are only for EnGarde Secure Linux Community ...
    (Bugtraq)
  • [ESA-20020301-006] php, mod_php MIME parsing vulnerabilities
    ... EnGarde Secure Linux is a secure distribution of Linux that features ... allow an attacker to execute arbitrary code as the web server user. ... To verify the signatures of the updated packages, ... These updated packages are for EnGarde Secure Linux 1.0.1. ...
    (Bugtraq)