[Full-disclosure] ntpd stack evasion exploit

Sean Crawford sean01 at accnet.com.au
Wed Jan 11 01:29:35 GMT 2006


Wednesday, January 11, 2006 9:30 AM Stan Bubrouski wrote.............



>>(no offense intended, this is a list to discuss the full
>> disclosure of vulnerabilities).

And judging from the original email I would say the Federal Reserve Bank of
Minneapolis may well be full of said vulnerabilities.

Just the fact a bank employee is posting on a public list asking for help is
insane, but this list!...WHOA

If I read a post from someone at my bank asking such things I would be
making my way to the nearest branch with a withdrawal form and a copy of the
email for the manager.

$0.02
Sean

'Shit........meet fan'




Full-Disclosure is hosted and sponsored by Secunia.