<div id="result_box" dir="ltr">seriously why the fuck is 100000 email on the telnet of the solaris with worthless content by gadi enron in mine inbox? </div><br>off take your jacket sports please !!!!!!!!<br><br><div><span class="gmail_quote">
On 2/13/07, <b class="gmail_sendername"><a href="mailto:Casper.Dik@sun.com">Casper.Dik@sun.com</a></b> <<a href="mailto:Casper.Dik@sun.com">Casper.Dik@sun.com</a>> wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
<br>>On Tue, 13 Feb 2007 <a href="mailto:Casper.Dik@Sun.COM">Casper.Dik@Sun.COM</a> wrote:<br>>><br>>> >On Tue, 13 Feb 2007 <a href="mailto:Casper.Dik@Sun.COM">Casper.Dik@Sun.COM</a> wrote:<br>>> >>
<br>>> >> ><br>>> >> >Am I missing something? This vulnerability is close to 10 years old.<br>>> >> >It was in one of the first versions of Solaris after Sun moved off of<br>>> >> >the SunOS BSD platform and over to SysV. It has specifically to do w=
<br>>> >> >ith<br>>> >> >how arguments are processed via getopt() if I recall correctly.<br>>> >><br>>> >> You're confused with AIX/Linux<br>>> >><br>>> >> Solaris did not have the -f option in login until much later.
<br>>> ><br>>> >Hi Casper. While we have you here, any idea on when Sun will be patching<br>>> >this issue?<br>>><br>>> Now, follow the links from <a href="http://sunsolve.sun.com/tpatches">
http://sunsolve.sun.com/tpatches</a><br>>><br>>> Casper<br>>><br>><br>>Many thanks Casper! Can you give some more information on exactly what is<br>>patched. Any Sun released advisory?<br><br><br>
The simplest possible fix on such short notice:<br><br><a href="http://cvs.opensolaris.org/source/diff/onnv/onnv-gate/usr/src/cmd/cmd-inet/usr.sbin/in.telnetd.c?r2=3629&r1=2923">http://cvs.opensolaris.org/source/diff/onnv/onnv-gate/usr/src/cmd/cmd-inet/usr.sbin/in.telnetd.c?r2=3629&r1=2923
</a><br><br>Casper<br><br>_______________________________________________<br>Full-Disclosure - We believe in it.<br>Charter: <a href="http://lists.grok.org.uk/full-disclosure-charter.html">http://lists.grok.org.uk/full-disclosure-charter.html
</a><br>Hosted and sponsored by Secunia - <a href="http://secunia.com/">http://secunia.com/</a><br></blockquote></div><br>