[ale] SSH Patch

Jonathan Rickman jonathan at xcorps.net
Tue Sep 16 12:21:48 EDT 2003


On Tuesday 16 September 2003 11:00, synco gibraldter wrote:

> it appears that they're now using an intermediate variable to change
> the buffer size and check before adjusting the primary variable....
> looks like it may have been susceptible to an overflow?  i can't tell
> for sure.  anyone know if there are active exploits yet or if this is a
> precaution?  thanks.

There have been reports of compromised systems. No details, but at least 
one major ISP was reportedly filtering SSH connections last night after 
receiving reports of multiple incidents.

-- 
Jonathan Rickman
Key ID: 0DF501FF




More information about the Ale mailing list