Great Circle Associates Majordomo-Users
(June 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Majordomo vulnerability
From: Larry Sheldon <lsheldon @ bluejay . creighton . edu>
Date: Wed, 8 Jun 94 10:38:04 CDT
To: majordomo-users @ greatcircle . com
Mailer: Elm [revision: 70.85.2.1]

It would appear that the problem actually exploits the "sendmail vulnerability",rather than representing an new sof-spot in the wall.  Is this analysis correct?

If it is, then I presume that having (we believe) closed the sendmail hole, we
are safe from this particular problem.

Comments?
--
-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-
. L. F. (Larry) Sheldon, Jr.                                            .
- Unix Systems Administration                                           - 
. Creighton University Computer Center - Old Gym                        .
- 2500 California Plaza                                                 -
. Omaha, Nebraska, U.S.A.  68178                                        .
- 402 280 2254 lsheldon@creighton.edu                                   -
. 402 977 2946 (pager--when it answers, dial the number where you will  .
-               for the following twenty minutes, then #, and hangup)   -
. 402 332 4622 (residence)                                              .
-                                                                       -
.                                                                       .
-           Most of us can do more than we think we can,                -
.             but usually do less than we think we do.                  .
-						       "Bits & Pieces"  -
.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.


Follow-Ups:
Indexed By Date Previous: Re: Majordomo SECURITY problem and fix
From: Brent Chapman <brent@mycroft.GreatCircle.COM>
Next: Re: Majordomo vulnerability
From: Brent Chapman <brent@mycroft.GreatCircle.COM>
Indexed By Thread Previous: REVISED: Majordomo SECURITY patch and fix (offical version)
From: "John P. Rouillard" <rouilj@cs.umb.edu>
Next: Re: Majordomo vulnerability
From: "Roger B.A. Klorese" <rogerk@unpc.queernet.org>

Google
 
Search Internet Search www.greatcircle.com