[10872] in bugtraq
Fwd: sdr security alert
daemon@ATHENA.MIT.EDU (Olaf Kirch)
Mon Jun 21 13:15:05 1999
Message-Id: <m10w503-000FCDC@monad.swb.de>
Date: Mon, 21 Jun 1999 16:24:39 +0200
Reply-To: Olaf Kirch <okir@MONAD.SWB.DE>
From: Olaf Kirch <okir@MONAD.SWB.DE>
To: BUGTRAQ@NETSPACE.ORG
------- Forwarded Message
Subject: sdr security alert
cc: okir@caldera.de, sdr@cs.ucl.ac.uk
Reply-To: sdr@cs.ucl.ac.uk
Date: Mon, 21 Jun 1999 15:04:01 +0100
Message-ID: <4605.929973841@cs.ucl.ac.uk>
From: Colin Perkins <C.Perkins@cs.ucl.ac.uk>
-----BEGIN PGP SIGNED MESSAGE-----
A serious security problem has been discovered with sdr which will allow
remote intruders to execute arbitrary code with the privileges of the sdr
user. This problem exists in all recent versions of sdr and affects both
unix and windows versions.
We are working on fixing this problem, but until that fix becomes available
we recommend that you do not use sdr.
Thanks to Olaf Kirch for bringing this problem to our attention.
Colin Perkins/Kristian Hasler
Networked Multimedia Group
University College London
-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv
iQCVAgUBN25GE7fj66MyK6VJAQF9HgP/TKwOmIgYbOCgs4Rjkqpc9XPiYtcbr4jF
obQx/zw06neado97q9lhA4XRqZZBSMAtEz9ju5lU9FKkJUMVQ5fncxHfzZz+zogv
/Z9zXOj73mifE/1rzgF9Ey3tLPGMU9aW1o0uLAXHYrGtMSa1FtR81fNf57NJHW/m
wQmYEOeQ6EQ=
=BFCx
-----END PGP SIGNATURE-----
------- End of Forwarded Message
--
Olaf Kirch | --- o --- Nous sommes du soleil we love when we play
okir@monad.swb.de | / | \ sol.dhoop.naytheet.ah kin.ir.samse.qurax
okir@caldera.de +------------------------------------------------------