[59712] in North American Network Operators' Group
Re: possible exploit.. (Cisco Issue)
daemon@ATHENA.MIT.EDU (NANOG)
Fri Jul 18 06:18:13 2003
Date: Fri, 18 Jul 2003 06:24:19 -0400
From: NANOG <nanog@wgustavus.com>
To: Len Rose <len@netsys.com>
Cc: nanog@merit.edu
In-Reply-To: <20030718072507.GH25368@netsys.com>
Errors-To: owner-nanog-outgoing@merit.edu
It appears Cisco has seen the posting too. The Cisco PSIRT updated
their announcement to 1.4 at 5am this morning. The sentence in the
"Exploitation and Public Announcments" section is new and states that
they are aware that the exploitation "has been publised on a public
mailing list".
The link is the same, but the version number has changed:
http://www.cisco.com/warp/public/707/cisco-sa-20030717-blocked.shtml
Len Rose wrote:
>It seems to work.
>
>On Fri, Jul 18, 2003 at 02:39:18AM -0400, Len Rose wrote:
>
>
>
>>This was posted a while ago.
>>
>>http://lists.netsys.com/pipermail/full-disclosure/2003-July/011421.html
>>http://lists.netsys.com/pipermail/full-disclosure/2003-July/011420.html
>>
>>I haven't had the chance to test it in a controlled environment yet.
>>
>>
>
>
>