Re: [Full-disclosure] Secuirty Hole Found In Dave's Sock

From: Exibar (exibar_at_thelair.com)
Date: 09/08/05

  • Next message: Jason Bethune: "RE: [Full-disclosure] Secuirty Hole Found In Dave's Sock"
    To: "Exibar" <exibar@thelair.com>, "Dave Cawley" <dave.cawley@adelphia.com>, <full-disclosure@lists.grok.org.uk>
    Date: Thu, 8 Sep 2005 13:53:09 -0400
    
    

    Because of this hole, SANS have just gone from green to argyle as well....

     exibar

    ----- Original Message -----
    From: "Exibar" <exibar@thelair.com>
    To: "Dave Cawley" <dave.cawley@adelphia.com>;
    <full-disclosure@lists.grok.org.uk>
    Sent: Thursday, September 08, 2005 1:31 PM
    Subject: Re: [Full-disclosure] Secuirty Hole Found In Dave's Sock

    > I've found out that using Dave's right Sock 1.0 along with Sandals 2.0
    will
    > cause this vulnerability to become very appearant and much worse. With
    this
    > known, Dave's rigth sock 1.0 should never EVER be used with any version of
    > Sandals (currently at v2.0).
    >
    > exibar
    >
    >
    > ----- Original Message -----
    > From: "Dave Cawley" <dave.cawley@adelphia.com>
    > To: <full-disclosure@lists.grok.org.uk>
    > Sent: Thursday, September 08, 2005 12:10 PM
    > Subject: [Full-disclosure] Secuirty Hole Found In Dave's Sock
    >
    >
    > Date: 9/8/2005
    >
    > Vulnerability Found: Hole In Dave's Socket
    >
    > Affected System: Dave's Right Sock
    >
    > Severity: Rating: Moderately Critical
    > Impact: System access
    > Where: Foot
    >
    > Description of Vulnerability: This morning while putting my socks
    > on I found a small (1/4 inch) hole by my big toe. This could be
    > exploited by a virus through the bottom of the foot or under the
    > toe nail. This could be used to compromise Dave's entire system.
    >
    > Solution: No permanent solution is currently available. A work
    > around is to wear the sock on the other foot to have the hole
    > above the small toe where it will not be furthur enlarged, it
    > will proboably fold over and partially cover the vulnerability.
    > Permanent solution coming in either a sock darning or upgrading
    > the unit to a new sock.
    >
    > Time Table: Found at 7:48am on Sept 8th, 1005
    > Work around figured out at 7:49am on Sept 8th,
    > 2005
    > Permanent Solution Pending
    >
    > Credits: Found by Dave
    >
    > References: No references available.
    >
    >
    > ***************************************************************
    > Dave D. Cawley |
    > High Speed Internet | The number of Unix installations
    > Duryea, PA | has grown to 10, with more expected.
    > (570)451-4311 x104 | - The Unix Programmer's Manual,1972
    > dave.cawley@adelphia.com |
    > ***************************************************************
    > URL => http://www.adelphia.net
    > _______________________________________________
    > Full-Disclosure - We believe in it.
    > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    > Hosted and sponsored by Secunia - http://secunia.com/
    >
    >
    > _______________________________________________
    > Full-Disclosure - We believe in it.
    > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    > Hosted and sponsored by Secunia - http://secunia.com/
    >
    >

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/


  • Next message: Jason Bethune: "RE: [Full-disclosure] Secuirty Hole Found In Dave's Sock"

    Relevant Pages

    • Re: [Full-disclosure] Secuirty Hole Found In Daves Sock
      ... assured that this hole has been properly patched. ... un-installation of all sock from my system. ... >Vulnerability Found: Hole In Dave's Socket ... No permanent solution is currently available. ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Secuirty Hole Found In Daves Sock
      ... On 9/8/05, Dave Cawley wrote: ... > Vulnerability Found: Hole In Dave's Socket ... > on I found a small hole by my big toe. ... > Permanent solution coming in either a sock darning or upgrading ...
      (Full-Disclosure)
    • RE: [Full-disclosure] Secuirty Hole Found In Daves Sock
      ... Bah I was so overcome by the sheer magnitude of this vulnerability that I ... Secuirty Hole Found In Dave's Sock ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Secuirty Hole Found In Daves Sock
      ... A number of patches are available, all depenent upon the severity of the vulnerability. ... Secuirty Hole Found In Dave's Sock ... on I found a small hole by my big toe. ... No permanent solution is currently available. ...
      (Full-Disclosure)
    • Re: Knitting a Patch
      ... Betsy went back to Crewel World to find Godwin deeply immersed in teaching a young woman to darn a hand knit sock. ... The sock, a bright orange with small black diamonds, was bulging smoothly over a small hole in the heel. ... He had threaded a darning needle appropriate to the thickness of the yarn used to knit the stocking. ... I like duplicate stitch if the place is only worn thin. ...
      (rec.crafts.textiles.needlework)