Re: AIM addendum
From: Paul Schmehl (pauls@utdallas.edu)Date: 01/02/02
- Previous message: Matt Conover: "AIM addendum"
- In reply to: Matt Conover: "AIM addendum"
- Next in thread: Matt Conover: "Re: AIM addendum"
- Reply: Matt Conover: "Re: AIM addendum"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Wed, 02 Jan 2002 13:42:08 -0600 From: Paul Schmehl <pauls@utdallas.edu> To: Matt Conover <shok@dataforce.net>, bugtraq@securityfocus.com
The temporary solution you provide would only protect you so long as all
the buddies on your list were not compromised. As soon as one buddy is
compromised, then you are vulnerable *through* that buddy. Or am I not
clearly understanding this exploit?
--On Wednesday, January 02, 2002 9:17 PM +0300 Matt Conover
<shok@dataforce.net> wrote:
>
> 2. A temporary solution to this vulnerability is:
> 1. Go to your Preferences
> 2. Go to the Privacy section
> 3. Click "Allow only users on my Buddy List" under "who can contact me"
>
> This will disable the vulnerability because you will appear signed off to
> anyone not in your buddy 3.
Paul Schmehl (pauls@utdallas.edu)
Supervisor of Support Services
The University of Texas at Dallas
AVIEN Founding Member
- Previous message: Matt Conover: "AIM addendum"
- In reply to: Matt Conover: "AIM addendum"
- Next in thread: Matt Conover: "Re: AIM addendum"
- Reply: Matt Conover: "Re: AIM addendum"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|