mailing list archives
Re: OpenServer 5.0.6 OpenServer 5.0.7 : chroot A known exploit can break a chroot prison.
From: Vincent van Scherpenseel <mailinglists () vanscherpenseel nl>
Date: Wed, 11 May 2005 22:57:16 +0200
On Wednesday 11 May 2005 20:44, KF (lists) wrote:
Anyone ever wonder why all their security advisories come out for known
issues two years after they have been found?
Anyone ever wonder why they STILL use a vulnerble version of wu ftpd on
one of their main servers?
Connected to ftpput.sco.com.
220 artemis FTP server (Version 2.1WU(1)) ready.
Move along... nothing to see here but a decrepid OS that no one cares
Keep in mind that you shouldn't fully rely on service banners. These are
easily faked to keep the script kiddies away. I know, that's security through
obscurity, but not the whole world is Full Disclosure.
- Vincent van Scherpenseel
Full-Disclosure - We believe in it.
Hosted and sponsored by Secunia - http://secunia.com/