[17831] in bugtraq

home help back first fref pref prev next nref lref last post

Re: bitchx remote xploit

daemon@ATHENA.MIT.EDU (RaiSe)
Wed Nov 29 12:55:59 2000

Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id:  <Pine.LNX.4.21.0011282315340.948-100000@apolo>
Date:         Tue, 28 Nov 2000 23:30:08 +0100
Reply-To: RaiSe <raise@BIOGATE.COM>
From: RaiSe <raise@BIOGATE.COM>
X-To:         Daniel Jacobowitz <dmj+@ANDREW.CMU.EDU>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <20001127155828.A29671@drow.them.org>

On Mon, 27 Nov 2000, Daniel Jacobowitz wrote:

> On Mon, Nov 27, 2000 at 12:15:09AM +0100, RaiSe wrote:
> > /*
> >  *  BitchX Xploit by RaiSe
> >  *  Tested with version 1.0c16(+) in:        redhat 6.0 (2.2.16)
> >  *                                           redhat 7.0 (2.2.16)
> >  *                                           debian 2.2 (2.2.16)
> >  *
> >  *  NetSearch Ezine Staff
> >  *  http://www.netsearch-ezine.com
> >  *
> >  */
>
> Sorry, you've got a different copy of Debian 2.2 than the rest of the
> world does...  This was fixed in 1.0c16-2, in July, when the problem
> was first discovered.
>
> Dan
>
> /--------------------------------\  /--------------------------------\
> |       Daniel Jacobowitz        |__|        SCS Class of 2002       |
> |   Debian GNU/Linux Developer    __    Carnegie Mellon University   |
> |         dan@debian.org         |  |       dmj+@andrew.cmu.edu      |
> \--------------------------------/  \--------------------------------/


I got client from bitchx.com and i compiled it.. i didn't know that debian
2.2 had bitchx fixed :(. I'm sorry about the comment "tested in debian
2.2", it can be misinterpreted.



--------------------------------------
RaiSe
UNDERSEC Security Team
NetSearch Ezine Staff
http://www.netsearch-ezine.com
ysfk>2{5~~2s~eska2~}dw2k}g<<< XOR 18
--------------------------------------

home help back first fref pref prev next nref lref last post