Re: Sendmail trojan...?

From: Nigel Houghton (nigel@nfr.com)
Date: 10/09/02


From: Nigel Houghton <nigel@nfr.com>
To: Mike Tancsa <mike@sentex.net>
Date: 09 Oct 2002 13:16:30 -0400



There are a myriad of possibilities, the only folks who can tell you are
those who are responsible for the box in question.

On Wed, 2002-10-09 at 13:00, Mike Tancsa wrote:
>
> Hi,
> Do you know the method they used to get in ? OpenSSL/https then
> local root exploit ? Although netcraft says
> Apache/1.3.26 (Unix) mod_ssl/2.8.10 OpenSSL/0.9.6e on FreeBSD
>
>
>
> ---Mike
>
> At 08:03 AM 09/10/2002 -0700, Claus Assmann wrote:
> >On Wed, Oct 09, 2002, Chris Faulhaber wrote:
> >
> > > Yes, the source in the tree has been verified against the
> > > signed tarball; plus, it was the configure script that was
> > > backdoored which buildworld does not use.
> >
> >It was not the configure script. I'm wondering who came up with
> >this rumor; please stop spreading it.
>
>
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message

-- 
---------------------------------------
Nigel Houghton     NFR Security Inc.
Webmaster          http://www.nfr.com/
There cannot be a crisis next week. My schedule is already full.
				--Henry Kissinger 

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Relevant Pages