Subject: Re: telnetd core
To: Bruno Saverio Delbono <Bruno.S.Delbono@wf0.com>
From: Steven M. Bellovin <smb@research.att.com>
List: netbsd-users
Date: 12/30/2002 17:00:50
In message <5.2.0.9.2.20021230133720.00aa87c8@192.168.33.5>, Bruno Saverio Delb
ono writes:
>
>You're fine.
He's not fine -- a daemon is dumping core. That shouldn't happen --
ever. Sure, maybe it's bad RAM, as someone suggested. Alternatively,
there's another bug -- and possibly a security bug -- lurking in
telnetd. Frankly, that strikes me as more likely.
Yes, he's got the latest fixes in. But that doesn't mean that no more
fixes are needed.
--Steve Bellovin, http://www.research.att.com/~smb (me)
http://www.wilyhacker.com (2nd edition of "Firewalls" book)