-----BEGIN PGP SIGNED MESSAGE-----
Hi
I got the CERT advisory (CA-99.08) about rpc.cmsd in my mailbox over the
weekend. It mentions vendor information about everyone *except* Compaq, which
also ships rpc.cmsd as part of CDE. I've disabled the service anyway, but
does anyone have any authoritative information about the vulnerability (or
otherwise) of rpc.cmsd as shipped with Tru64 Unix?
Regards
Richard
- -----------------------------------------------------------------------
Deniable unless PGP-signed
Richard Stevenson
Systems Engineer
Information Technology Services
Victoria University of Wellington
- -----------------------------------------------------------------------
-----BEGIN PGP SIGNATURE-----
Version: PGPfreeware 5.0i for non-commercial use
Charset: noconv
iQCVAwUBN5JY0KRUcYUOWi3VAQEicQP/XiMLDUAHm7WD37F33z6IZ2EaBzpA2MqO
D24prv89ieBzAlfsFfg/Oj2BcXl5In6VYwUjt9FPsmUDA8SsqnTdeltNmA4aRynC
FAC98KF6ERFqj++HHEbNvlxKp+ZrUhn//OZV9uETuYVAZiLk9ktAbJdCu/M6mzyP
PKNy2FgF3kg=
=l+Ex
-----END PGP SIGNATURE-----
Received on Sun Jul 18 1999 - 22:46:44 NZST