Re: TCP Timestamping and Remotely gathering uptime information

2001-03-19 Thread Chris Tobkin
The problem with releasing this information is that an attacker can see how long the system has been online and possibly correlate that with what patches are installed on the system telling whether it is likely to be vulnerable to certain exploit(s). 'uname' is a little different in that it only

Re: Amanda multiple vendor local root compromises

1999-11-01 Thread Chris Tobkin
d binaries installed by a `make install` are perm'd o-rwx and have a gid of sys or other) -- All I have for reference here are solaris and AIX machines.. can anyone else confirm? // chris [EMAIL PROTECTED] ******