Security Incidents mailing list archives

RE: Voluminous SSHd scanning; possible worm activity?


From: jon schatz <jon () divisionbyzero com>
Date: 11 Dec 2001 16:58:21 -0800

On Tue, 2001-12-11 at 05:12, Gommers, Joep wrote:
Also SSH versions 2.0.x and 2.9.2 have not yet published exploit around.

wait, are you sure about this? is this a known issue (ie, UseLogin and
sftp), or is this based on something new? there have been rumors on many
lists (vuln-dev, focus-linux, etc) of such an exploit, which is quite
scary. do you have a reliable source on this?

-jon

-- 
jon () divisionbyzero com || www.divisionbyzero.com
gpg key: www.divisionbyzero.com/pubkey.asc
think i have a virus?: www.divisionbyzero.com/pgp.html
"You are in a twisty little maze of Sendmail rules, all confusing." 

Attachment: _bin
Description:


Current thread: