tooltalk vulnerable on Digital Unix ??

From: Andrew Daviel (andrewat_private)
Date: Thu Oct 08 1998 - 13:14:49 PDT

  • Next message: Max Vision: "more Netscape 4.07 javascript security"

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    
    We have an Alpha workstation running Digital Unix that may
    have been attacked via tooltalk.
    
    I don't see Digital Unix in the NAI advisory. Comments ?
    
    We see this in the logs:
    
    libtt[450]: _Tt_rpc_client::init(): fcntl(F_SETFD)
    libtt[14723]: ttdt_Xt_input_handler(): tttk_message_receive():
    TT_ERR_NOMP^INo ttsession process is running, probably because tt_open()
    has not been called yet. If this
    code is returned from tt_open() it means ttsession could not be started,
    which generally means ToolTalk is
    not installed on this system.
    
    Andrew Daviel
    http://vancouver-webpages.com/andrew
    Deniable unless digitally signed.
    
    
    -----BEGIN PGP SIGNATURE-----
    Version: PGPfreeware 5.0i for non-commercial use
    Charset: noconv
    
    iQA/AwUBNh0dPlJ35y/HYktJEQJJiQCdEWRARCmHbgfconmRExzz3rIkXpYAnjYz
    2qOVznLKgGsv8Rh04d0hboan
    =1tY2
    -----END PGP SIGNATURE-----
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:18:59 PDT