SCO OpenServer Security Status

1999-12-21 Thread Michael Almond
files (also buffer overflows) /bin/hello: Can improperly acess privileged devices Allows transmission of dangerous characters /bin/write: Allows transmission of dangerous characters /bin/login: Corrupt /etc/dialups causes login failure Insufficient

Re: recent SCO 5.0.x vulnerabilities

1999-10-21 Thread Michael Almond
Jon, Sorry for the lack of information, we've been trying to fix as many exploits as possible. In light of your message, instead of releasing all fixes at once, we will release the first batch of fixes (approximately 24) ASAP (ie. hopefully in the next couple of days) and then follow that up wit

Re: recent SCO 5.0.x vulnerabilities

1999-09-17 Thread Michael Almond
SCO is working on investigating and fixing the recent vulnerabilities reported here (namely the 19 buffer overflows, Xt and lpr exploits). We will have a patch for OpenServer 5.0.5 in two weeks, which will be available from http://www.sco.com/security/. Thanks, Michael Almond Team Lead, SCO

SCO Security Bulletin 99.17

1999-01-03 Thread Michael Almond
=== SCO Security Bulletin 99.17 5th-November-1999 Multiple Vulnerabilities Found In OpenServer --- I. Description Several security holes have been fou