[10417] in bugtraq

home help back first fref pref prev next nref lref last post

FreeBSD 3.1 remote reboot exploit

daemon@ATHENA.MIT.EDU (Jamie Rishaw)
Mon May 3 18:39:28 1999

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-Id: <19990501031840.A24252@dilbert.exodus.net>
Date: 	Sat, 1 May 1999 03:18:40 -0500
Reply-To: jamie@exodus.net
From: Jamie Rishaw <jamie@EXODUS.NET>
To: BUGTRAQ@NETSPACE.ORG

Hi,

  Sorry to be so vague, but I wanted to let everyone know,

  It's been demonstrated to me by two people who will not reveal "how"
that there is a remote bug exploit, almost certainly over IP, that will
cause FreeBSD-3.1 systems to reboot with no warnings.

  The second box this was demonstrated on today had no open services
besides ircd, and was remote rebooted.  (The first box had open services
such as smtp, ssh, pop, http, but did /not/ run ircd, eliminating ircd
as the culprit).

  If anyone can shed some light on this (really bad) issue, it'd be
greatly appreciated, especially since I am(was) in the process of
upgrading all of my boxes to 3.1. (3.1-REL).

  Regards,

-jamie
--
jamie rishaw (efnet:gavroche) -- Exodus Communications, Inc.
>Sr. Network Engr, Chicago, SoCal Data Centers
<jimmie> In an interesting move Exodus Communications annouced today that
         they have replaced all of their backbone engineers with furby's

home help back first fref pref prev next nref lref last post