security hole in xntpd

From: Bob Vickers <bobv_at_cs.rhul.ac.uk>
Date: Fri, 06 Apr 2001 17:38:16 +0100 (BST)

Dear all,

A major security hole (remote root hack) has been discovered in xntpd on
other Unix systems. Does anyone know whether Tru64 is vulnerable to this?

I have killed all my xntpd processes pending clarification...better the
clock drifting a few seconds than a root compromise.

Thanks,
Bob
==============================================================
Bob Vickers R.Vickers_at_cs.rhul.ac.uk
Dept of Computer Science, Royal Holloway, University of London
WWW: http://www.cs.rhul.ac.uk/home/bobv
Phone: +44 1784 443691
Received on Fri Apr 06 2001 - 16:39:17 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:42 NZDT