[24895] in Kerberos
Re: OT: Re: Solaris telnetd failure with Heimdal client
daemon@ATHENA.MIT.EDU (Dave Love)
Fri Nov 4 10:14:32 2005
To: kerberos@mit.edu
From: Dave Love <fx@albion.dl.ac.uk>
Date: Fri, 04 Nov 2005 15:06:30 +0000
Message-ID: <rzqr79wmozt.fsf@loveshack>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
X-Complaints-To: usenet@sea.gmane.org
Reply-To: d.love@dl.ac.uk
Errors-To: kerberos-bounces@mit.edu
Will Fiveash <William.Fiveash@sun.com> writes:
> The folks are Sun are aware of this and looking into it.
[Not according to the support person.]
> I do not know the details of the interaction between Sun support and
> Dave so I can not comment on that.
For what it's worth, it subsequently appears to have been a
`misunderstanding' of a quite explicit report, but it was consistent
with previous experience, so I came to engineer land immediately.
> In regards to a DoS, I thought telnetd was spawned by
> inetd so I don't see the DoS.
Yes, but it is remotely crashing a process running as root, and might
be exploitable for all I know. I don't doubt the engineers care
anyway, thanks.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos