---------- Forwarded message ---------- Date: Fri, 13 Sep 2002 10:47:05 -0700 From: Stafford A. Rau Reply-To: plug@lists.pdxlinux.org To: plug@lists.pdxlinux.org Subject: [PLUG] [plhofmei@zionlth.org: Fwd: bugtraq.c httpd apache ssl attack] Here's more info about what looks to be a modssl compromise. --Stafford ----- Forwarded message from Phillip Hofmeister ----- Date: Fri, 13 Sep 2002 13:25:28 -0400 From: Phillip Hofmeister To: debian-security@lists.debian.org Subject: Fwd: bugtraq.c httpd apache ssl attack Message-ID: <20020913172528.GA12508@zionlth.org> User-Agent: Mutt/1.4i X-Mailing-List: archive/latest/8890 Even through we are not mentioned are we vulnerable to this attack? ----- Forwarded message from Fernando Nunes ----- Envelope-to: plhofmei@zionlth.org Delivery-date: Fri, 13 Sep 2002 13:20:23 -0400 Mailing-List: contact bugtraq-help@securityfocus.com; run by ezmlm Precedence: bulk List-Id: List-Post: List-Help: List-Unsubscribe: List-Subscribe: Delivered-To: mailing list bugtraq@securityfocus.com Delivered-To: moderator for bugtraq@securityfocus.com Date: 13 Sep 2002 13:55:17 -0000 X-Mailer: MIME-tools 5.411 (Entity 5.404) From: Fernando Nunes To: bugtraq@securityfocus.com Subject: bugtraq.c httpd apache ssl attack I am using RedHat 7.3 with Apache 1.3.23. Someone used the program "bugtraq.c" to explore an modSSL buffer overflow to get access to a shell. The attack creates a file named "/tmp/.bugtraq.c" and compiles it using gcc. The program is started with another computer ip address as argument. All computer files that the user "apache" can read are exposed. The program attacks the following Linux distributions: Red-Hat: Apache 1.3.6,1.3.9,1.3.12,1.3.19,1.3.20,1.3.22,1.3.23,1.3.26 SuSe: Apache 1.3.12,1.3.17,1.3.19,1.3.20,1.3.23 Mandrake: 1.3.14,1.3.19 Slakware: Apache 1.3.26 Regards Fernando Nunes Portugal ----- End forwarded message ----- -- Phil PGP/GPG Key: http://www.zionlth.org/~plhofmei/ wget -O - http://www.zionlth.org/~plhofmei/ | gpg --import XP Source Code: #include #include #include #include #include #include #include #include //os_ver="Windows 2000" os_ver="Windows XP" -- To UNSUBSCRIBE, email to debian-security-request@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org ----- End forwarded message ----- _______________________________________________ PLUG mailing list PLUG@lists.pdxlinux.org http://lists.pdxlinux.org/mailman/listinfo/plug