> >The server is running Red Hat 7.0. With all packages up to date. The >following daemons are running: wu-ftpd, apache, telnet, openssh, named >I never access the system via telnet, it is there just for backup >purpose. > I guess its the wu-ftpd exploit that lead to root access not ssh, probably they checked several exploits until one worked. laj -- Andreas Wiesmann, Beaumontweg 38, 3007 Bern P 031 372 12 22, G 031 951 70 05, Fax 031 951 70 08 ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
This archive was generated by hypermail 2b30 : Mon Dec 03 2001 - 13:50:41 PST