Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos network security services platform







Bugtraq: Re: heanet.dl.sourceforge.net hacked?

Re: heanet.dl.sourceforge.net hacked?

From: Rainer Duffner <rainer_at_ultra-secure.de>
Date: Wed, 30 Apr 2008 18:23:14 +0200

Michael Scheidell schrieb:
>
> or have wrong file?
>
> in attempting to upgrade png (due to security problem), we tried to
> pull from sourceforge mirrors.
> (note below, libpng says file size for libpng-1.2.27.tar.bz2 with
> scripts should be 641193) heanet has a bigger file.
> other sourceforge.net mirrors have it right.
>
> Was heanet.dl hacked? are some people downloading a trojanized
> version of png?
> all attempts (in the past) to contact sourceforge had been useless.
>
> http://www.libpng.org/pub/png/libpng.html
>
>
> Attempting to fetch from
> http://heanet.dl.sourceforge.net/sourceforge/libpng/.
> fetch:
> http://heanet.dl.sourceforge.net/sourceforge/libpng/libpng-1.2.27.tar.bz2:
> size mismatch: expected 641193, actual 804821
>

I now get identical files (well, at least from switch.ch and heanet and
surfnet.

cheers,
Rainer
Received on Apr 30 2008

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]