fam
[Top] [All Lists]

fam exploit?

To: fam@xxxxxxxxxxx
Subject: fam exploit?
From: Me <joe@xxxxxxxxxxxxxxxxxxxxxxx>
Date: Tue, 9 Dec 2003 15:39:45 -0500
Reply-to: me <joe@xxxxxxxxxxxxxxxxxxxxxxx>
Sender: fam-bounce@xxxxxxxxxxx
User-agent: Mutt/1.3.28i
What do you think of this:
Dec  6 16:08:07 plaguesplace fam[3044]: fd 5 message length 67181060
bytes exceeds max of 4136.
Dec  6 16:08:07 plaguesplace fam[3044]: fd 6 message length 1129270862
bytes exceeds max of 4136.
Dec  6 16:08:07 plaguesplace fam[3044]: fd 5 message length 83951621
bytes exceeds max of 4136.
Dec  6 16:08:10 plaguesplace fam[3044]: fd 5 message length 1347375956
bytes exceeds max of 4136.
Dec  6 16:08:12 plaguesplace in.telnetd[16701]: refused connect from
pberetta@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Dec  6 16:08:12 plaguesplace in.telnetd[16700]: refused connect from
pberetta@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

Dec  7 16:21:11 plaguesplace fam[3044]: fd 5 message length 1129270862
bytes exceeds max of 4136.
Dec  7 16:21:11 plaguesplace fam[3044]: fd 5 message length 1347375956
bytes exceeds max of 4136.
Dec  7 16:21:11 plaguesplace fam[3044]: fd 5 message length 67181060
bytes exceeds max of 4136.
Dec  7 16:21:14 plaguesplace fam[3044]: fd 5 message length 83951621
bytes exceeds max of 4136.
Dec  7 16:21:16 plaguesplace in.telnetd[18227]: refused connect from
pberetta@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Dec  7 16:21:16 plaguesplace in.telnetd[18228]: refused connect from
pberetta@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

The tcpd man page says it cannot wrap rpc/tcp services.  The fam man
page says the Local-only mode does not work from inetd.  So how do we
protect this daemon?

joe
-- 

<Prev in Thread] Current Thread [Next in Thread>