public inbox for gentoo-dev@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-dev] [Fwd: Remote root vuln in lsh 1.4.x]
@ 2003-09-19 17:32 Chris Gianelloni
  0 siblings, 0 replies; only message in thread
From: Chris Gianelloni @ 2003-09-19 17:32 UTC (permalink / raw
  To: gentoo-dev

[-- Attachment #1: Type: text/plain, Size: 593 bytes --]

This is for the "LSH isn't insecure anymore" crowd.


-----Forwarded Message-----
From: Haggis <haggis@learningshophull.co.uk>
To: bugtraq@securityfocus.com
Subject: Remote root vuln in lsh 1.4.x
Date: 19 Sep 2003 13:01:24 +0000


After reading about a theoretical remote hole in OpenSSH and many detractors 
smugly saying that they weren't vulnerable because they run LSH (a free 
alternative), I'd like to present a working remote root exploit against LSH 
version 1.4.x.

Enjoy.
-- 
Chris Gianelloni
Developer, Gentoo Linux
Games Team

Is your power animal a pengiun?

[-- Attachment #2: This is a digitally signed message part --]
[-- Type: application/pgp-signature, Size: 189 bytes --]

^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2003-09-19 17:34 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-09-19 17:32 [gentoo-dev] [Fwd: Remote root vuln in lsh 1.4.x] Chris Gianelloni

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox