Security Breach ?

Chris Strzelczyk cstrzelczyk at nobletechnology.net
Thu Mar 3 05:11:26 UTC 2005


On Mar 3, 2005, at 12:11 AM, Thomas Cameron wrote:

>
> <snip>
>
> Look in /var/tmp - anything there called aVe or uselib24 or bots.txt?
> Also, look in your /var/log/httpd area for anything weird in access_log
> or error_log.

Yes, I did have a couple of PERL programs in /var/tmp.  One was called 
https and it is attached.
As far as I understand this vulnerability it is limited to the user 
Apache is run by correct?


Thanks
-cs
-------------- next part --------------
A non-text attachment was scrubbed...
Name: https
Type: application/octet-stream
Size: 19066 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-list/attachments/20050303/80307d0f/attachment-0001.obj>
-------------- next part --------------



More information about the fedora-list mailing list