Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-26 Thread Vesselin Kolev
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Mahinata e Athlon na 750 MHz s 256 MB RAM. Celiat problem, razbira se ne e v resursite. Kogato se nadnikne v maillog-a se vizhda, che niakoi ot serverite, do koito daemona se opitva da ustanovi SMTP sesii imat meko kazano stranni otgovori na requestit

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-26 Thread Georgi Kupenov
Vesselin Kolev wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Eto :) Malko da se osvezhite i da ne se karate... Tova e kartinka ot polozhenieto s procesite na edin mail-hub: http://62.44.103.111/~vlk/msviruses.asc A move li da razberem na kakwa mashina e naprawena kartinkata: CPU, RAM ? Ne

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-25 Thread Васил Колев
Като го прочетох това, се сетих веднага за EWD( Edsger Wybe Dijskra), който е писал доста на тази тема, и ето един линк, който може да е интересен: http://www.cs.utexas.edu/users/EWD/ewd10xx/EWD1012.PDF И всъщност, на много хора може да е интересно да прочетат нещата, намиращи се на http://www.cs.u

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-25 Thread Борис Йорданов
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Thursday 25 September 2003 10:13, G. Georgiev (Skeleta) wrote: > Проблема с бъговете (изобщо със семантичния анализ на програми) е пряко > свързан > с фундаменталните математико-логически резултати за неразрешимост от > 30-те години > на миналия ве

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-25 Thread G. Georgiev (Skeleta)
Tsvetin Vasilev wrote: Vesselin Kolev wrote: Ta ima li software shte ima bygove. Edin prepodavatel v universiteta ni pokazvashe, che mozhe da ima byg i v programa na 2 reda za sybirane na dve chisla:)) Taka, che niama strashno. A dali mozhe da postnesh primercheto ej-tyj prosto mi e interesno

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Alexander Shopov
Питали радио Ереван: Какво е това Слакуеър. Радио Ереван отвърнало: Аааа - Линукса дето се мъчи да стане Би Ес Ди ама не успява. ал_шопов Тази седмица може и да направя първата си инсталация на Слак ;-) ал_шопов Plamen Tonev wrote: On Wed, 24 Sep 2003 16:17:51 +0300 Georgi Chorbadzhiyski <[EMAIL P

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread George Danchev
On Wednesday 24 September 2003 19:35, Plamen Tonev wrote: > On Wed, 24 Sep 2003 16:17:51 +0300 > > Georgi Chorbadzhiyski <[EMAIL PROTECTED]> wrote: > > Citat ot ChangeLog-a na slack-current > > > > > > > > .If you see a security problem reported which depends on PAM, > > >you can be gl

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Ivan Dimitrov
prav si, no samo na polovina. versia 1.03 na qmail izliza prez 1999 (ili beshe 98!?!?) ot togava sa minali 4 godini. polzva se ot sigurno milioni serveri. kakto i da e. qmail ne pravi pochti nishto ot samosebesi. za tova sa napisani stoticite patchove v koito ot vreme na vreme izliza nqkoe bugche.

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Plamen Tonev
On Wed, 24 Sep 2003 16:17:51 +0300 Georgi Chorbadzhiyski <[EMAIL PROTECTED]> wrote: > Citat ot ChangeLog-a na slack-current > > > .If you see a security problem reported which depends on PAM, >you can > be glad you run Slackware. I think a better name for PAM might >be SCAM, for Sw

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Stanislav Lechev [AngelFire]
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 btw nawremeto mnogo se plyueshe po onzi finlandskiq ssh (ftp.ssh.fi) ama togawa wsichki distrota bqha s nego i beshe normalno da ima exploitz za nego togawa se goworeshe kolko po secure bil openssh-a mi eto kakwo se poluchawa slagat go w distribuciite

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Georgi Chorbadzhiyski
Plamen Tonev wrote: On Wed, 24 Sep 2003 12:19:33 +0300 Georgi Chorbadzhiyski <[EMAIL PROTECTED]> wrote: Da ne govorim che poslednite bugove, dosega nikoi ne e dokazal che sa remote exploitable, samo che mogat da prichiniat DoS. Sorry za loshata novina...dnes do 11h beshe taka...no veche ne: It

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Tsvetin Vasilev
Vesselin Kolev wrote: Ta ima li software shte ima bygove. Edin prepodavatel v universiteta ni pokazvashe, che mozhe da ima byg i v programa na 2 reda za sybirane na dve chisla:)) Taka, che niama strashno. A dali mozhe da postnesh primercheto ej-tyj prosto mi e interesno :) uspeh ceci =

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Boris Jordanov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Yasen Balev said the following on 24.09.2003 19:08: | | То пък ако ipsec е цвете... V smisul? Znaesh kak da go probiesh ili e truden za rabota? -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.1 (GNU/Linux) iD8DBQE/cYvWKDHlLar/ewgRAuf1AJ4npXlI2x5wtLmX

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Yasen Balev
On Wednesday 24 September 2003 11:33, Boris Jordanov wrote: > .. :) Maj v edin moment ste se > okaze, che puskame IPSec m/u podopechnite ni mashini i plustim telnet-i > na volja... То пък ако ipsec е цвете...

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Yasen Balev
Не е верно. Плюя го openssh поголовно. но само когато знам защо. Ето например, PAM аз не ползвам. On Wednesday 24 September 2003 09:43, Teodor Georgiev wrote: > Interesno e obache kak horata meriat vsichko s dvoen arshin... > Ako exploita beshe za sendmail, dosega da se beshe napylnil threada s fl

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Vesselin Kolev
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Eto :) Malko da se osvezhite i da ne se karate... Tova e kartinka ot polozhenieto s procesite na edin mail-hub: http://62.44.103.111/~vlk/msviruses.asc Ne si mislete, che vryzkata e bavna ili potoka ot pisma e goliam. Prosto tova e MS Patch virus:)

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Vesselin Kolev
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Dobre de:) Stiga flames.. Nomera e vsashnost bygreportite byrzo da stigat do nas i da imame vreme za adekvatna reakcia.. Inache vinagi mozhem da napliuem neshto.. ia za kef, ia ot zloba, ia ot skuka.. Ta ima li software shte ima bygove. Edin prepodav

Re[2]: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Nikolay Hristov
Hello George, Wednesday, September 24, 2003, 1:31:31 PM, you wrote: >> Teodor Georgiev wrote: >> > Interesno e obache kak horata meriat vsichko s dvoen arshin... >> > Ako exploita beshe za sendmail, dosega da se beshe napylnil threada s ama vie mai hich si niamate rabota i drankate gluposti samo

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Plamen Tonev
On Wed, 24 Sep 2003 12:19:33 +0300 Georgi Chorbadzhiyski <[EMAIL PROTECTED]> wrote: Da ne govorim che poslednite > bugove, dosega nikoi ne e dokazal che sa remote exploitable, samo che > mogat da prichiniat DoS. Sorry za loshata novina...dnes do 11h beshe taka...no veche ne: It has been reporte

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Plamen Tonev
On Wed, 24 Sep 2003 10:43:02 +0300 Teodor Georgiev <[EMAIL PROTECTED]> wrote: > > > Interesno e obache kak horata meriat vsichko s dvoen arshin... > Ako exploita beshe za sendmail, dosega da se beshe napylnil threada s flame > war za tova, kolko bygav e sendmail i che oshte imalo mnogo serveri

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread George Danchev
On Wednesday 24 September 2003 12:19, Georgi Chorbadzhiyski wrote: > Teodor Georgiev wrote: > > Interesno e obache kak horata meriat vsichko s dvoen arshin... > > Ako exploita beshe za sendmail, dosega da se beshe napylnil threada s > > flame war za tova, kolko bygav e sendmail i che oshte imalo mn

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Ivan Dimitrov
loshoto e che poslednite dve sedmici postoqnno si nashtrek za novi updatei na ssh. nadqvam se openssh ne se prevurne v sendmail - bug->patch, bug->patch... iskrenno se nadqvam. drug vupros e che az vse oshte polzvam sendmail (na workstation :)) i to bes pritesneniq. sledq si problemite za dobro ili

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Boris Jordanov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Georgi Chorbadzhiyski said the following on 24.09.2003 12:19: | Teodor Georgiev wrote: | |>Interesno e obache kak horata meriat vsichko s dvoen arshin... |>Ako exploita beshe za sendmail, dosega da se beshe napylnil threada s flame |>war za tova, kolko

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Nickola Kolev
Здрасти, Не можах да разбера, липсва ти flame war-а ли? Защото с тия си думи изглежда като да се опитваш да започнеш точно такава. А иначе преди седмица беше открита още една (поредната) дупка в sendmail. И какво от това? Всичко е въпрос на избор. On Wed, 24 Sep 2003 10:43:02 +0300 Teodor Geor

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Georgi Chorbadzhiyski
Teodor Georgiev wrote: > > Interesno e obache kak horata meriat vsichko s dvoen arshin... > Ako exploita beshe za sendmail, dosega da se beshe napylnil threada s flame > war za tova, kolko bygav e sendmail i che oshte imalo mnogo serveri > raboteshti pod sendmail. I kolko stabilen bil qmail i t.

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-24 Thread Teodor Georgiev
Interesno e obache kak horata meriat vsichko s dvoen arshin... Ako exploita beshe za sendmail, dosega da se beshe napylnil threada s flame war za tova, kolko bygav e sendmail i che oshte imalo mnogo serveri raboteshti pod sendmail. I kolko stabilen bil qmail i t.n. i t.n. Ama kato izleze explo

Re: lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-23 Thread Plamen Tonev
On Wed, 24 Sep 2003 00:19:54 +0300 чБУЙМ лПМЕЧ <[EMAIL PROTECTED]> wrote: > Господ определено ни мрази Ne, po-skoro njakoi e sednal da chete nared source-a na openssh ;-)) Tochno kakto Harald Welte beshe opisal che se e sluchilo s netfilter ;-) Greetz -- "When did I realize I

lug-bg: [Fwd: [Full-Disclosure] **NEW** OpenSSH Vuln Today]

2003-09-23 Thread Васил Колев
Господ определено ни мрази --- Begin Message --- -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 To: Secure Shell Subject: Multiple PAM vulnerabilities in portable OpenSSH Date: Sep 23 2003 12:40PM Author: Damien Miller Message-ID: <[EMAIL PROTECTED]> Subject: Portable OpenSSH Security A