BugTraq
Solaris telnet vulnberability - how many on your network? Feb 12 2007 06:00AM
Gadi Evron (ge linuxbox org) (2 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 14 2007 10:41AM
Leandro Gelasi (leandro gelasi tiscali it)
RE: Solaris telnet vulnberability - how many on your network? Feb 13 2007 06:10AM
Oliver Friedrichs (oliver_friedrichs symantec com) (2 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 06:11PM
Casper Dik Sun COM (1 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 08:49PM
Gadi Evron (ge linuxbox org) (1 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 08:53PM
Casper Dik Sun COM (1 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 08:56PM
Gadi Evron (ge linuxbox org) (2 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 09:00PM
Casper Dik Sun COM (1 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 14 2007 12:16AM
Joe Shamblin (wjs cs duke edu) (3 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 15 2007 06:51AM
Darren Reed (avalon caligula anu edu au)
RE: [Full-disclosure] Solaris telnet vulnberability - how many onyour network? Feb 14 2007 02:25PM
David Taylor (ltr isc upenn edu)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 08:59PM
Gadi Evron (ge linuxbox org)
RE: Solaris telnet vulnberability - how many on your network? Feb 13 2007 09:46AM
Gadi Evron (ge linuxbox org) (2 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 08:19PM
georg oppenberg deu mci com
RE: Solaris telnet vulnberability - how many on your network? Feb 13 2007 07:36PM
Michal Zalewski (lcamtuf dione ids pl) (1 replies)
On Tue, 13 Feb 2007, Gadi Evron wrote:

> I have to agree with a previous poster and suspect (only suspect) it
> could somehow be a backdoor rather than a bug.

You're attributing malice to what could be equally well (or better!)
explained by incompetence or gross negligence. The latter two haunt large
companies far more often, compared to sinister conspiracies.

Yeah, a backdoor is a remote possibility. But it's also an arbitrary and
needlessly complex one. Maybe it's a nefarious plot by our UFO-appointed
shadow government, but chances are, it's not (they have better things to
do today).

Keep that in mind: when risking so much, of all the places to put a covert
backdoor to use for years to come, pulling out a known flaw that will be
spotted by many existing vulnerability scanners, and putting it in a
service that is often disabled as obsolete and generally unreachable from
the outside world, doesn't really make that much sense.

Unless, of course, it's a sabotage attempt orchestrated by a joint team of
IBM and SCO developers... now, that begins to make sense..

/mz

[ reply ]
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 09:01PM
Casper Dik Sun COM (2 replies)
Re[2]: Solaris telnet vulnberability - how many on your network? Feb 14 2007 12:32AM
Thierry Zoller (Thierry Zoller lu) (2 replies)
Re: Re[2]: Solaris telnet vulnberability - how many on your network? Feb 15 2007 06:49AM
Darren Reed (avalon caligula anu edu au) (2 replies)
Reflections on Trusting Trust [was: Re: Solaris telnet ...] Feb 16 2007 01:19AM
Gadi Evron (ge linuxbox org)
RE: Re[2]: Solaris telnet vulnberability - how many on your network? Feb 15 2007 07:10PM
Evans, Thomas (ttevans hawkcorp net)
RE: Re[2]: Solaris telnet vulnberability - how many on your network? Feb 14 2007 09:28PM
Roger A. Grimes (roger banneretcs com) (1 replies)
RE: Re[2]: Solaris telnet vulnberability - how many on your network? Feb 15 2007 12:55AM
Gadi Evron (ge linuxbox org)
Re: Solaris telnet vulnberability - how many on your network? Feb 13 2007 09:08PM
Gadi Evron (ge linuxbox org) (1 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 14 2007 09:15PM
Damien Miller (djm mindrot org) (1 replies)
Re: Solaris telnet vulnberability - how many on your network? Feb 15 2007 12:50AM
Gadi Evron (ge linuxbox org)


 

Privacy Statement
Copyright 2010, SecurityFocus