Squirrel wrote:
My server was hacked, and the hacker was nice enough to not cause
damage except changing index.php of couple of my websites. The
index.php had the following info:
"Hacked By Top First Warning That's Bug From Your Servers Next Time
You Must Be Careful And Fixed Your Site Before C
On Wed, Dec 09, 2009 at 06:40:17PM -0600, Squirrel wrote:
> My server was hacked, and the hacker was nice enough to not cause damage
> except changing index.php of couple of my websites. The index.php had the
> following info:
>
> "Hacked By Top
> First Warning That's Bug From Your Servers
> Ne
Am 09.12.2009 um 17:13 schrieb Daniel Braniss:
[B]ooting off the CF (using boot0sio), the input 'screwy'
at the selection of partition it is ignored, at the OK: prompt
from the boot (i had no kernel in the slice), the input is usually
doubled:
sshooww instead of show
which is probably si
>> But far as rtld vulnerability, doesn't it require at least a local
user account?
No, it requires a script and a kiddie. ;) You'd expect your
"index.php" (or similar) files would require a ftp/ssh/telnet
connection, but useful "kids" have useful resources 'n which these
things are not always
Stuart Barkley wrote:
On Tue, 8 Dec 2009 at 20:07 -, Miroslav Lachman wrote:
Virtual Media / Virtual Console from all vendors is paint in the
[...]
So I am disapointed by this hyped feature ;(
Does anyone here find this stuff useful?
We have a vendor pushing "Virtual Media" on us and
- Original Message -
From: "Stuart Barkley"
Does anyone here find this stuff useful?
Yes its is very useful for remote installs etc but it doest have its
limitations when it doesnt play nice with the OS.
This e.mail is private and
As long as you have to re-install everything from scratch, you can
consider installing 8.0 and having your services jailed. The new jail is
announced to be much improved.
Markiyan.
Paul Procacci wrote:
>> But far as rtld vulnerability, doesn't it require at least a local
user account?
No, i
Only just noticed this, but there seems to be a small, but annoying,
pieece of breakage in email under 8.0
try and send a simple piece of email, type a few lines, then
use '~h' to try and change the 'to' header (or any of them actually).
what you get is a set of blank headers, instead of the origi
On 12/10/2009 2:32 AM, Daniel Braniss wrote:
>> Which ALIX board exactly? There are some differences (even various BIOSes).
>> Any chance you have vga driver in kernel? TinyBIOS emulates VGA a bit,
>> redirects output to serial port. If at the beginning you are trying both VGA
>> and serial port,
On 12/10/2009 2:28 AM, Daniel Braniss wrote:
>> On 12/9/2009 11:13 AM, Daniel Braniss wrote:
>>> hi,
>>> FreeBSD-8 works great on these boards, but there are some
>>> gotchas, the boot and the serial: output works fine, but input
>>> is 'problematic'. the pxeboot serial handling is ok, the boot
On Wednesday 09 December 2009 8:52:06 pm Chris H wrote:
> On Wed, December 9, 2009 6:50 am, John Baldwin wrote:
> > On Tuesday 08 December 2009 7:06:18 pm Chris H wrote:
> >
> >> Greetings,
> >> I am receiving the following in dmesg (verbose) during boot in 8-RELEASE
> >> (GENERIC)
> >> cvsuped 200
I do have most of measure you've mentioned implemented. There is one website
that is required to have register_global, which I have set on his
directory/.htaccess to prevent site-wide. Currently, I'm in process of
upgrading all my ports.
Thanks for info.
-Original message-
From: Mat
Squirrel wrote:
> I do have most of measure you've mentioned implemented. There is one website
> that is required to have register_global, which I have set on his
> directory/.htaccess to prevent site-wide. Currently, I'm in process of
> upgrading all my ports.
>
Don't forget to check vuln
On Thu, Dec 10, 2009 at 08:48:31AM -0500, John Baldwin wrote:
> Hmmm, there isn't anything CPU-specific in ULE vs 4BSD, and I would expect
> ULE to work fine on a PIII. I would generally expect device timeouts to be
> more of a driver issue than a scheduler issue.
We've run nodes in the package b
Hello Derek,
On Thursday 10 December 2009 04:45:12 Derek Kulinski wrote:
> My console gets flooded by "pf: unlocked lookup" message anyone knows
> what circumstances cause this message, so I could figure out which pf
> rule is causing it?
this is a generic informational message that was put into
Hello Max,
Thursday, December 10, 2009, 9:38:41 AM, you wrote:
> this is a generic informational message that was put into the code to figure
> out if the hack that is "debug.pfugidhack" is actually required. You can get
> rid of the message by setting the debug level of pf to something below "m
I found more - apparently 802.11a works (there are no 11a nodes at work,
but the box connects at home where I have a dual-band AP.)
So the problem I see is specific to g (and not auth mode since at work
we have all of open, wpa, wpa2, wep visible.) wlandebug sheds no light
on the problem. I stil
Hello!
On Thu, Dec 10, 2009 at 10:22:09AM -0800, Derek Kulinski wrote:
> Hello Max,
>
> Thursday, December 10, 2009, 9:38:41 AM, you wrote:
>
> > this is a generic informational message that was put into the code to figure
> > out if the hack that is "debug.pfugidhack" is actually required. Yo
On Wed, 9 Dec 2009 15:52:23 -0600 Mike Pritchard wrote:
> On Mon, Dec 07, 2009 at 10:23:49AM +0200, Mikolaj Golub wrote:
>> On Sun, 6 Dec 2009 20:18:13 +0200 Kostik Belousov wrote:
>>
>> > The kernel paniced because chkdq was supplied NULL credentials and
>> > _positive_ blocks use count change.
On Tue, Dec 08, 2009 at 10:08:36AM -0800, Pyun YongHyeon wrote:
> On Tue, Dec 08, 2009 at 10:52:07AM +0900, Yoshiaki Kasahara wrote:
> > On Fri, 4 Dec 2009 10:43:01 -0800,
> > Pyun YongHyeon said:
> >
> > >> before I replaced vge(4). I guess the system froze while initializing
> > >> vge(4),
On Thu, Dec 10, 2009 at 01:52:49PM -0800, Pyun YongHyeon wrote:
> On Tue, Dec 08, 2009 at 10:08:36AM -0800, Pyun YongHyeon wrote:
> > On Tue, Dec 08, 2009 at 10:52:07AM +0900, Yoshiaki Kasahara wrote:
> > > On Fri, 4 Dec 2009 10:43:01 -0800,
> > > Pyun YongHyeon said:
> > >
> > > >> before I re
I'm having intermittent IPv6 issues on one FreeBSD 8-stable box.
I've tried to ping6 the FreeBSD-8 stable (crag) (as of 12/9/09) from snow
leopard (glow) and from a freebsd 7.2 box (gw).
I've tried replacing the fxp0 interface in the FreeBSD-8 stable box with an em0
interface and it works with
I haven't made any significant changes in the IPv6 code
for 3 months now. Could you please get a packet capture and
email it to me?
Thanks,
-- Qing
From: owner-freebsd-sta...@freebsd.org on behalf of Tom Pusateri
Sent: Thu 12/10/2009 7:15 PM
To: freebsd-stabl
Its been happening for a while.
I've attached the tcpdump textual output, the tcpdump raw saved file, and
before and after netstat -s output.
Thanks,
Tom
On Dec 10, 2009, at 10:22 PM, Li, Qing wrote:
> I haven't made any significant changes in the IPv6 code
> for 3 months now. Could you please
Hello, and thank you very much for your reply.
On Thu, December 10, 2009 5:48 am, John Baldwin wrote:
> On Wednesday 09 December 2009 8:52:06 pm Chris H wrote:
>
>> On Wed, December 9, 2009 6:50 am, John Baldwin wrote:
>>
>>> On Tuesday 08 December 2009 7:06:18 pm Chris H wrote:
>>>
>>>
Greet
Hi,
I think I managed to reproduce this issue. The root cause appears
to be the SIN_PROXY usage, which is no longer part of any routing
entry after the L2/L3 rewrite. As such, the RTM_GET command
should be issued once in the ARP utility, not twice.
In addition, since ARP does not apply to PPP li
> On 12/10/2009 2:32 AM, Daniel Braniss wrote:
> >> Which ALIX board exactly? There are some differences (even various BIOSes).
> >> Any chance you have vga driver in kernel? TinyBIOS emulates VGA a bit,
> >> redirects output to serial port. If at the beginning you are trying both
> >> VGA
> >>
27 matches
Mail list logo