[1971] in WWW Security List Archive

home help back first fref pref prev next nref lref last post

NCSA httpd bug before 1.5a?

daemon@ATHENA.MIT.EDU (Nickolai Zeldovich)
Fri May 3 01:38:00 1996

Date: Thu, 2 May 1996 22:03:57 -0400 (EDT)
From: Nickolai Zeldovich <kolya@port19.creol.ucf.edu>
To: Rolf Weber <weber@iez.com>
cc: Philippe Gresse <pgresse@ifhamy.insa-lyon.fr>, jerryb@howpubs.com,
        www-security@ns2.rutgers.edu
In-Reply-To: <9605021148.AA16454@spibm02>
Errors-To: owner-www-security@ns2.rutgers.edu

could anyone tell me what exactly is this bug that allows people to 
execute that was fixed in 1.5a? i'm trying to check my machine for the 
existance of the bug and also the severity of it - i.e. is it even worth 
fixing on my machine?
could anyone tell me how to exploit this bug to see how severe it is and 
what kind of options does it allow?
thanks.
nickolai zeldovich.

home help back first fref pref prev next nref lref last post