[13536] in bugtraq

home help back first fref pref prev next nref lref last post

Re: remote root qmail-pop with vpopmail advisory and exploit with

daemon@ATHENA.MIT.EDU (iv0)
Mon Jan 24 20:40:05 2000

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Message-Id:  <388C77F7.A1092B41@inter7.com>
Date:         Mon, 24 Jan 2000 10:04:07 -0600
Reply-To: iv0 <kbo@INTER7.COM>
From: iv0 <kbo@INTER7.COM>
X-To:         Robert Varga <robi@piros.zold.net>
To: BUGTRAQ@SECURITYFOCUS.COM

Robert Varga wrote:
>
> On Sun, 23 Jan 2000, iv0 wrote:
>
> >
> > I recommend upgrading to the latest version of vpopmail which fixes
> > the exploit. Pick up the current stable version:
>
> So it is fixed from version 3.4.11?
>
> Robert Varga

Yes, version 3.4.11j as of Jan 20th has the fix.

Ken Jones

home help back first fref pref prev next nref lref last post