On Wed, 4 Apr 2001, Przemyslaw Frasunek wrote: > /* ntpd remote root exploit / babcia padlina ltd. <[EMAIL PROTECTED]> */ Just a quick note to save others a bit of legwork... If you are running ntpd on a machine simply as a client, the following line in /etc/ntp.conf should keep people away: restrict default ignore Before adding this (I actually had the wrong syntax), the exploit crashed ntpd. Afterwords, not a blip, and ntpdate shows that ntpd is not answering anything... Charles
- Re: ntpd =< 4.0.99k remote buffer... Tomasz Grabowski
- Re: ntpd =< 4.0.99k remote bu... Sebastian Piech
- Re: ntpd =< 4.0.99k remote buffer... Matt Collins
- Re: ntpd =< 4.0.99k remote bu... Alexander Gall
- Re: ntpd =< 4.0.99k remot... Casper Dik
- Re: ntpd =< 4.0.99k remote bu... Fyodor
- Re: ntpd =< 4.0.99k remote buffer... Charles Sprickman
- Re: ntpd =< 4.0.99k remote buffer... Bruce A. Mah
- Re: ntpd =< 4.0.99k remote buffer over... Gary E. Miller
- Re: ntpd =< 4.0.99k remote buffer... William D. Colburn (aka Schlake)
- Re: ntpd =< 4.0.99k remote buffer over... Charles Sprickman
- Re: ntpd =< 4.0.99k remote buffer... Jan Kluka
- Re: ntpd =< 4.0.99k remote buffer... Crist Clark
- Re: ntpd =< 4.0.99k remote buffer... Athanasius
- Re: ntpd =< 4.0.99k remote buffer over... Klaus Steden
- Re: ntpd =< 4.0.99k remote buffer over... Stephen Clouse
- Re: ntpd =< 4.0.99k remote buffer... Dick St.Peters
- Re: ntpd =< 4.0.99k remote buffer... Przemyslaw Frasunek
- Re: ntpd =< 4.0.99k remote bu... Stephen Clouse
- Re: ntpd =< 4.0.99k remote buffer over... Rex Sanders
- Re: ntpd =< 4.0.99k remote buffer over... Viraj Alankar
