[35005] in bugtraq

home help back first fref pref prev next nref lref last post

Exploit codes for CVS Vulnerability and snort rules from ISC

daemon@ATHENA.MIT.EDU (K-OTiK Security)
Sat May 22 19:03:30 2004

Date: 22 May 2004 14:36:40 -0000
Message-ID: <20040522143640.16773.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: K-OTiK Security <Special-Alerts@k-otik.com>
To: bugtraq@securityfocus.com



hello,

as you know two exploits were released for the CVS vulnerability discovered by S.Esser

http://www.k-otik.com/exploits/05212004.CVS_Solaris.c.php
http://www.k-otik.com/exploits/05212004.CVS_Linux.c.php

the ISC Handlers George Bakos and Mike Poor put together some simple and very good snort rules to detect these cvs exploits ...take a look at ISC.

http://isc.sans.org/diary.php?date=2004-05-21

Best Regards.
Fabienni Gilles - Security Consultant
K-OTik Security Survey 24/7
http://www.k-otik.com

home help back first fref pref prev next nref lref last post