由买买提看人间百态

boards

本页内容为未名空间相应帖子的节选和存档,一周内的贴子最多显示50字,超过一周显示500字 访问原贴
Security版 - Ask for help
相关主题
Who knows such an attack/back doorAbout central user administration in a subnet
SSH exploitRedhat Security Advisory about xinetd.
弱女子作揖求助有人在Linux下用过FreeSwan吗?
[转载] 请问这是什么病毒?help needed
anyone can give hints on hotmail?系统恢复
Redhat 6.2 restore exploit求助!电脑死翘翘了
socks5 remote exploit / linux x86没防火墙的话要注意什么呢?
redhat 6.2 vs 7.1?But i Cannot run windows update!!!
相关话题的讨论汇总
话题: ask话题: redhat话题: new话题: looks话题: patched
进入Security版参与讨论
1 (共1页)
j*****o
发帖数: 320
1
New Redhat 7.0, never patched before. Today,
I found a new account with uid 0.
Here is the /var/log/messages. This looks like a overflow
bug.
I don't know which program has this bug. Can anyone
give a hint?
Thank you.
D****N
发帖数: 430
2
If it's the never-patched Redhat you're vulunerable to the so-called
Ramen worm.. Looks like the user from 212.179.162.109 has already got
access to your machine thro the security hole from LPRng or wu-ftpd
Go get the patch as soon as possible from http://www.redhat.com/support/errata/
A complete reinstall is the safest option for you now. Then patch up
the system (every one is recommended.. :( that's a lot I know) and
disallow incoming requesting using tcp wrappers for all but trusted
ips.

【在 j*****o 的大作中提到】
: New Redhat 7.0, never patched before. Today,
: I found a new account with uid 0.
: Here is the /var/log/messages. This looks like a overflow
: bug.
: I don't know which program has this bug. Can anyone
: give a hint?
: Thank you.

j*****o
发帖数: 320
3
Yes, It looks like LPRng.
Thank you.

【在 D****N 的大作中提到】
: If it's the never-patched Redhat you're vulunerable to the so-called
: Ramen worm.. Looks like the user from 212.179.162.109 has already got
: access to your machine thro the security hole from LPRng or wu-ftpd
: Go get the patch as soon as possible from http://www.redhat.com/support/errata/
: A complete reinstall is the safest option for you now. Then patch up
: the system (every one is recommended.. :( that's a lot I know) and
: disallow incoming requesting using tcp wrappers for all but trusted
: ips.

1 (共1页)
进入Security版参与讨论
相关主题
But i Cannot run windows update!!!anyone can give hints on hotmail?
[转载] SGI workstationRedhat 6.2 restore exploit
[转载] HELP!!! Forgot my NT's password!!!socks5 remote exploit / linux x86
Win NT help needed!redhat 6.2 vs 7.1?
Who knows such an attack/back doorAbout central user administration in a subnet
SSH exploitRedhat Security Advisory about xinetd.
弱女子作揖求助有人在Linux下用过FreeSwan吗?
[转载] 请问这是什么病毒?help needed
相关话题的讨论汇总
话题: ask话题: redhat话题: new话题: looks话题: patched