[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sheflug] No ramen here, thanks...



Richard Lowe writes:
 > * PaulSims062527@aol.com (PaulSims062527 [at] aol.com) wrote:
 > > 
 > > Whoever is sending the Ramen stuff.... my email scanner obhects to whatever 
 > > is in there and helpfully bins it. If you have something to say about Ramen a 
 > > silly html page won't do it. 
 > > 
 > > Has this list been hacked?
 > 
 > uhm.
 > 
 > Ramen isnt an Email worm, it exploits the bugs in wu-ftpd and rpc-statd
 > (and maybe lprNG or something, I forget).

It attacks wu-ftpd and one of nfs-utils programs from RH6.2 (enabled
by default) and LPRng from RH7.0 (again, enabled by default).

The patches for all of these have been kicking around for months.

Why, oh why aren't all distros set up with nothing (well, only
OpenSSH) enabled as standard practice?
I don't think any of the major distros have bothered with this..

Hell - even OpenBSD runs portmap as standard (although their version
hasn't been exploited for at least 3 years).

Baz.

-- 
Barrie J. Bremner

TheEnglishman [at] ecosse.net | OpenPGP public key ID: 5164F553
	    http://www.geocities.com/thefatenglishman
	    [Contact information available at website]

   "Linux? Is that some kind of MacOS?"
      -- BT technical support

---------------------------------------------------------------------
Sheffield Linux User's Group - http://www.sheflug.co.uk
To unsubscribe from this list send mail to
- <sheflug-request [at] vuw.ac.nz> - with the word 
 "unsubscribe" in the body of the message. 

  GNU the choice of a complete generation.