An PHP exploit with Potato?

2002-02-26 Thread Antti Tolamo
Hello, Is there an PHP exploit in Potato? I really don't know, below message in Dshield mailing lists claims so: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I finally got my hands on an exploit that will provide a remote shell (not root) for php < 4.0.6. It claims to exploit the fol

unsubscribe

2002-02-26 Thread Barry Price

An PHP exploit with Potato?

2002-02-26 Thread Antti Tolamo
Hello, Is there an PHP exploit in Potato? I really don't know, below message in Dshield mailing lists claims so: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > > I finally got my hands on an exploit that will provide a > remote shell (not root) for php < 4.0.6. It claims to explo

unsubscribe

2002-02-26 Thread Barry Price
-- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

unsubscribe cmaury@ares.fr

2002-02-26 Thread AUDIT
unsubscribe [EMAIL PROTECTED]

[±¤°í] È­ÀÌÆ®µ¥ÀÌ ÇູÀ̺¥Æ® 10

2002-02-26 Thread ·ÎÁî100
Title: 영원한 사랑 장미 100송이로 만드세요 <정보통신망이용촉진 및 정보보호에 관한 법률에 의거 표시> 허락없이 메일을 보내서 죄송합니다. 이 메일은 웹서핑 도중 공개된 님의 메일을 보고 보내드리

unsubscribe cmaury@ares.fr

2002-02-26 Thread AUDIT
unsubscribe [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: webhosting

2002-02-26 Thread martin f krafft
also sprach Jerry Lynde <[EMAIL PROTECTED]> [2002.02.25.2218 +0100]: > I just wouldn't suggest anyone use BIND is the same sense that I wouldn't > suggest they > ride a Harley naked on snow-packed icy roads... something bad's bound to > happen... you are asking for it... i would consider my BIND

[±¤°í] È­ÀÌÆ®µ¥ÀÌ ÇູÀ̺¥Æ® 10

2002-02-26 Thread ·ÎÁî100
Title: ¿µ¿øÇÑ »ç¶û Àå¹Ì 100¼ÛÀÌ·Î ¸¸µå¼¼¿ä <Á¤º¸Åë½Å¸ÁÀÌ¿ëÃËÁø ¹× Á¤º¸º¸È£¿¡ °üÇÑ ¹ý·ü¿¡ ÀǰŠǥ½Ã> Çã¶ô¾øÀÌ ¸ÞÀÏÀ» º¸³»¼­ Á˼ÛÇÕ´Ï´Ù. ÀÌ ¸ÞÀÏÀº À¥¼­ÇÎ µµÁß °ø°³µÈ ´ÔÀÇ ¸ÞÀÏÀ» º¸°í º¸³»µå¸®´Â ±¤°íÀÔ´Ï´Ù. °áÄÚ, ¸ÞÀÏÁÖ¼ÒÀÌ¿Ü ´Ô¿¡ ´ëÇÑ ¾î¶² Á¤º¸µµ °¡Áö°í ÀÖÁö ¾Ê½À´Ï´Ù

Re: webhosting

2002-02-26 Thread martin f krafft
also sprach Jerry Lynde <[EMAIL PROTECTED]> [2002.02.25.2218 +0100]: > I just wouldn't suggest anyone use BIND is the same sense that I wouldn't > suggest they > ride a Harley naked on snow-packed icy roads... something bad's bound to > happen... you are asking for it... i would consider my BIN

Re: webhosting

2002-02-26 Thread Robert van der Meulen
Quoting Sven Hoexter ([EMAIL PROTECTED]): > You forgot to mention that you can chroot bind since a 8.x release. Yup ! :) > The chroot is not the non plus ultra solution but it throws a few more stones > in the way of the script kiddies. ..and it is even quite maintainable in a chroot, when runn

Re: webhosting

2002-02-26 Thread Tim Haynes
Sven Hoexter <[EMAIL PROTECTED]> writes: [snip] >> I'm still under the impression that it's quite possible to do a >> reasonably secure bind install. Bind9 has some nice security-related >> features, and a completely rewritten codebase (as opposed to bind8). I'm >> not sure what insecurities you'd

Re: webhosting

2002-02-26 Thread Sven Hoexter
On Mon, Feb 25, 2002 at 10:59:20PM +0100, Robert van der Meulen wrote: > Quoting Jerry Lynde ([EMAIL PROTECTED]): > > At 12:15 PM 2/25/2002, Robert wrote: Hi, > > I just wouldn't suggest anyone use BIND is the same sense that I wouldn't > > suggest they > > ride a Harley naked on snow-packed icy

Re: webhosting

2002-02-26 Thread Robert van der Meulen
Quoting Sven Hoexter ([EMAIL PROTECTED]): > You forgot to mention that you can chroot bind since a 8.x release. Yup ! :) > The chroot is not the non plus ultra solution but it throws a few more stones > in the way of the script kiddies. ..and it is even quite maintainable in a chroot, when run

Re: webhosting

2002-02-26 Thread Tim Haynes
Sven Hoexter <[EMAIL PROTECTED]> writes: [snip] >> I'm still under the impression that it's quite possible to do a >> reasonably secure bind install. Bind9 has some nice security-related >> features, and a completely rewritten codebase (as opposed to bind8). I'm >> not sure what insecurities you'

Re: webhosting

2002-02-26 Thread Sven Hoexter
On Mon, Feb 25, 2002 at 10:59:20PM +0100, Robert van der Meulen wrote: > Quoting Jerry Lynde ([EMAIL PROTECTED]): > > At 12:15 PM 2/25/2002, Robert wrote: Hi, > > I just wouldn't suggest anyone use BIND is the same sense that I wouldn't > > suggest they > > ride a Harley naked on snow-packed ic

Re: apache-ssl/woody cannot handle password protected keys?

2002-02-26 Thread Thomas Gebhardt
Hi, > One solution which I use is this... I have both my cert.pem and > cert.key file in in a directory... I then run the following: > > openssl x509 -in cert.pem -out /etc/apache/ssl.crt/server.crt > openssl rsa -in cert.key -out /etc/apache/ssl.key/server.key > chown root:root /etc/apache