Yet another IIS hole
Jim Herrmann
kclug at itdepends.com
Thu Mar 20 06:11:36 CST 2003
Also to be fair, this Linux hole only applies to local access to the
box. Remote access, such as over the web, is not applicable. The IIS
hole, OTH, was responsible for a DOD web server being compromised.
Thanks,
Jim
Jason Clinton wrote:
> Kurt Kessler wrote:
>
>> Interesting read, and such good timing too...
>>
>> http://www.msnbc.com/news/886524.asp?cp1=1
>
>
> To be fair, everyone should patch their Linux kernels to the latest
> released by your vendor. A local root hole was discovered in ptrace a
> week ago. 2.4.21 will fix this.
>
More information about the Kclug
mailing list