[2840] in bugtraq

home help back first fref pref prev next nref lref last post

Re: [linux-security] BoS: CERT Advisory CA-96.12 - Vulnerability

daemon@ATHENA.MIT.EDU (Brian Tao)
Sun Jun 30 01:56:30 1996

Date: 	Sat, 29 Jun 1996 23:53:30 -0400
Reply-To: Bugtraq List <BUGTRAQ@netspace.org>
From: Brian Tao <taob@io.org>
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@netspace.org>
In-Reply-To:  <Pine.LNX.3.91.960629021654.15516g-100000@inorganic5.chem.ufl.edu>

On Sat, 29 Jun 1996, Jon Lewis wrote:
>
> Is it just me...or does it give people the willies knowing such an
> easy to exploit hole was on their systems...perhaps for years.

    Exactly which versions of perl are susceptible to this?  I tried
it using /usr/contrib/bin/perl on a BSD/OS 2.0 system as well as
/usr/bin/perl on FreeBSD 2.1/2.2 systems, and none gave a root shell.
--
Brian Tao (BT300, taob@io.org, taob@ican.net)
Systems and Network Administrator, Internet Canada Corp.
"Though this be madness, yet there is method in't"

home help back first fref pref prev next nref lref last post