Re: FreeBSD.Scalper.Worm

From: Benjamin Krueger (benjamin@seattleFenix.net)
Date: 06/30/02


Date: Sun, 30 Jun 2002 07:18:03 -0700
From: Benjamin Krueger <benjamin@seattleFenix.net>
To: Andy Farkas <andyf@speednet.com.au>


* Andy Farkas (andyf@speednet.com.au) [020630 05:51]:
> On Sat, 29 Jun 2002, Kent Stewart wrote:
>
> > One of the people sending mail to -docs, pointed me to
> >
> > http://securityresponse.symantec.com/avcenter/venc/data/freebsd.scalper.worm.html
> >
> > It looks like more exposure needs to be provided via the web site and etc.
> >
> > Kent
> >
> > --
> > Kent Stewart
> > Richland, WA
> >
> > http://users.owt.com/kstewart/index.html
> >
>
> Looks like this worm can be stopped by having /tmp mounted noexec.

Or running a non-vulnerable version of Apache.

> --
>
> :{ andyf@speednet.com.au
>
> Andy Farkas
> System Administrator
> Speednet Communications
> http://www.speednet.com.au/

-- 
Benjamin Krueger
"Life is far too important a thing ever to talk seriously about."
- Oscar Wilde (1854 - 1900)
----------------------------------------------------------------
Send mail w/ subject 'send public key' or query for (0x251A4B18)
Fingerprint = A642 F299 C1C1 C828 F186  A851 CFF0 7711 251A 4B18
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message