WARNING rsync Extremely critical hole found in open source software

Peter V. (LTS) konfery na lentus.sk
Pátek Prosinec 5 11:28:25 CET 2003


Je to uz den stara spravicka, ale (mozno) mnohi (ako ja) pouzivajuci rsync
sa dozvedeli az teraz:

A PROBLEM in rsync is likely to have been used to compromise Gentoo, Debian
and Savannah.
And security company Secunia is warning it is an "extremely critical" error
which needs to be fixed immediately.
The immediate advice is to filter traffic to the rsync service on port
873/tcp, letting only trusted systems to connect.

http://www.theinquirer.net/?article=13037

Viac info google - je tam toho hodne.
Debianisti este aj:

debian.org compromise cleanup status
http://www.wiggy.net/debian/status/

Peter



Další informace o konferenci Linux