Hello Alex,

parca mai erau cateva buguri mici :) astea din ciclul "hai sa ii dam dreptate lu'
gushteru' linux vs bsd":)

Gushterul

Tuesday, July 16, 2002, 3:00:39 AM, you wrote:

ACC> pentru cei care nu sunt abonati la bugtraq
ACC> ( deocamdata era pentru freebsd, dar ... )

ACC> ----
ACC> SSH clients and servers communicate by exchanging discrete messages
ACC> with a variable number of parameters.  Due to the lack of sufficient
ACC> integrity checks in a portion of the server code responsible for
ACC> handling incoming SSH2_MSG_USERAUTH_INFO_RESPONSE messages, it was
ACC> possible for a malicious client to send a message that would cause the
ACC> server to overwrite portions of its memory with client-provided data.
ACC> ----

ACC> <URL:http://www.openssh.com/txt/preauth.adv>
ACC> <URL:http://www.iss.net/security_center/static/9169.php>


ACC> Alex

ACC> ps: iar bube in openssh ?
ACC> ---
ACC> Pentru dezabonare, trimiteti mail la 
ACC> [EMAIL PROTECTED] cu subiectul 'unsubscribe rlug'.
ACC> REGULI, arhive si alte informatii: http://www.lug.ro/mlist/

---
Pentru dezabonare, trimiteti mail la 
[EMAIL PROTECTED] cu subiectul 'unsubscribe rlug'.
REGULI, arhive si alte informatii: http://www.lug.ro/mlist/


Raspunde prin e-mail lui