related question (was: security hole in xntpd)

From: Russ Fish <rfish_at_oz.net>
Date: Fri, 06 Apr 2001 10:01:08 -0700

A related question to Bob's--any impact on U of Delaware's ntp daemon 4.0x
(http://www.eecis.udel.edu/~ntp/)?

--------- original msg below ---------------

Dear all,

A major security hole (remote root hack) has been discovered in xntpd on
other Unix systems. Does anyone know whether Tru64 is vulnerable to this?

I have killed all my xntpd processes pending clarification...better the
clock drifting a few seconds than a root compromise.

Thanks,
Bob
==============================================================
Bob Vickers R.Vickers_at_cs.rhul.ac.uk
Dept of Computer Science, Royal Holloway, University of London
WWW: http://www.cs.rhul.ac.uk/home/bobv
Phone: +44 1784 443691
Received on Fri Apr 06 2001 - 17:02:15 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:42 NZDT