Vulnerability Development mailing list archives

Re: Multiple Vendor Telnetd Buffer Overflow Vulnerability Worm


From: "Kenneth L. Grossman" <kgrossman () dazzling com>
Date: Thu, 06 Sep 2001 07:26:34 -0400

Is this the "x.c" worm that is discussed in the NIPC Assessment 01-019, or
is it a new one?

Ken

At 03:35 PM 09/05/2001 -0600, Alfred Huger wrote:

Heya all,

There is apparently a worm in circulation which exploits the Multiple
Vendor Telnetd Buffer Overflow Vulnerability BID 3064:

http://www.securityfocus.com/bid/3064

The ARIS Analyst Team are actively looking for a copy of this worm, "x.c"
should you have a copy of it and be willing to shoot it this way we would
deeply appreciate it. Any research we perform will posted directly back to
the list(s) for public consumption.

VP Engineering
SecurityFocus
"Vae Victis"




Ken Grossman
kgrossman () dazzling com
(202) 323-3205


Current thread: