LinuxQuestions.org
Support LQ: Use code LQCO20 and save 20% on CrossOver Office
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware
User Name
Password
Slackware This Forum is for the discussion of Slackware Linux.

Notices

Reply
 
LinkBack Search this Thread
Old 07-08-2009, 12:14 PM   #1
Dump_Weed
LQ Newbie
 
Registered: Jul 2009
Posts: 12

Rep: Reputation: 0
Exclamation Possible SSH Exploit.


Theres rumors running around the net about a hole in ssh.

This rumored hole allows a attacker to break into your system.

Full Deatils are here.

http://secer.org/hacktools/0day-open...e-exploit.html

Might be worth checking your on the latest SSH version.

Keep in mind this is only rumors.

cheers
Dump
 
Old 07-08-2009, 12:18 PM   #2
MS3FGX
Guru
 
Registered: Jan 2004
Location: NJ, USA
Distribution: Slackware, Debian
Posts: 5,715

Rep: Reputation: 325Reputation: 325Reputation: 325Reputation: 325
So this is the rumor? Because somebody made a blog post with a supposed log of their commands?
 
Old 07-08-2009, 02:40 PM   #3
Dump_Weed
LQ Newbie
 
Registered: Jul 2009
Posts: 12

Original Poster
Rep: Reputation: 0
I will say it is a rumor as there have been no offical reports of this use of this script etc.

Any one can blog that they have hacked system x and put together convincing log files etc.

However it is always a good idea to make sure you are on the latest version of your distrobutions software etc.

If i find out that there is a real issue i will update this thread.

cheers
 
Old 07-08-2009, 03:01 PM   #4
slackass
Member
 
Registered: Apr 2006
Location: SE Texas
Distribution: Slack64-C ML
Posts: 751

Rep: Reputation: 59
Well, all day on the news they've been talking about gov web sites being shut down from some sort of denial of service attacks from North Korea.
http://news.yahoo.com/s/ap/20090708/...a_cyber_attack

Last edited by slackass; 07-08-2009 at 05:17 PM. Reason: oooooops!
 
Old 07-08-2009, 03:19 PM   #5
unSpawn
Moderator
 
Registered: May 2001
Posts: 20,992
Blog Entries: 44

Rep: Reputation: 1239Reputation: 1239Reputation: 1239Reputation: 1239Reputation: 1239Reputation: 1239Reputation: 1239Reputation: 1239Reputation: 1239
See http://isc.sans.org/diary.html?storyid=6742 and next time please post any security news, rumours in http://www.linuxquestions.org/questi...ux-security-4/, this isn't slack-specific (or so you hope ;-p)
 
Old 07-08-2009, 03:41 PM   #6
Dump_Weed
LQ Newbie
 
Registered: Jul 2009
Posts: 12

Original Poster
Rep: Reputation: 0
Ops @ wrong section of forum.
 
  


Reply

Tags
exploit, ssh


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Req ssh exploit pawarsac Linux - Security 1 07-22-2006 05:32 AM
*BSD exploit??? mcleodnine *BSD 3 05-13-2005 01:35 PM
What exploit is this? Boss Hoss Linux - Security 6 06-11-2004 07:16 PM
SSH remote exploit code... khermans Linux - Security 1 10-01-2003 04:28 AM
|more exploit Benamoz Linux - General 3 09-03-2003 05:59 AM


All times are GMT -5. The time now is 10:44 AM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration