[35005] in bugtraq
Exploit codes for CVS Vulnerability and snort rules from ISC
daemon@ATHENA.MIT.EDU (K-OTiK Security)
Sat May 22 19:03:30 2004
Date: 22 May 2004 14:36:40 -0000
Message-ID: <20040522143640.16773.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: K-OTiK Security <Special-Alerts@k-otik.com>
To: bugtraq@securityfocus.com
hello,
as you know two exploits were released for the CVS vulnerability discovered by S.Esser
http://www.k-otik.com/exploits/05212004.CVS_Solaris.c.php
http://www.k-otik.com/exploits/05212004.CVS_Linux.c.php
the ISC Handlers George Bakos and Mike Poor put together some simple and very good snort rules to detect these cvs exploits ...take a look at ISC.
http://isc.sans.org/diary.php?date=2004-05-21
Best Regards.
Fabienni Gilles - Security Consultant
K-OTik Security Survey 24/7
http://www.k-otik.com