- TalkBack 19 of 25:
- Next »
- « Previous
- Thread View
- Flat View
- I don't know about Windows
-
But I might think twice about reloading Black Ice or Real Secure, although the products in question have been patched since March 9:
"Description:
The Witty worm exploits a stack-based overflow in ICQ response parsing
in the Protocol Analysis Module (PAM) of ISS products. It is a memory-
resident worm only, and contains no file payload. Witty propagates via
UDP, sending UDP packets with a random destination and destination port.
The source port of Witty traffic is 4000, and the source address is not
spoofed.
The worm will attempt to propagate immediately by sending copies of
itself out across the wire to random targets. After sending a predefined
number of packets, Witty attempts to open a randomly determined physical
drive and write 64k of data to a random location. This cycle repeats for
every 20,000 packets sent.
Recommendations:
ISS Product updates that address this vulnerability have been available
since March 9, 2004. These updates are accessible via the ISS Download
Center."
Given that these are firewall products, they will by definition have very low-level system access. And they had a bug (the products, not the OS) that was exploitable. Since the product had low-level access, anything that could punch a hole in it could gain low-level access. - Posted by: pschroeder@... Posted on: 03/21/04 You are currently: a Guest | Members login | Terms of Use
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
What do you think?
SponsoredWhite Papers, Webcasts, and Downloads
- VMware Infrastructure: A Guide to Bottom-Line Benefits VMware Frustrated by the costs of maintain ever larger data centers?or building ... Download Now
- The True Costs of Virtual Server Solutions VMware In an economic environment that is repeatedly heralding the message "do ... Download Now
- SOA for Dummies 2nd IBM Limited Edition Mini eBook IBM Learn the basics of SOA by following 7 real-life companies as they experience the truly game-changing effects of this important technology initiative. Download Now
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
- New Online Dashboard for IT Leaders
-
Read about top issues IT decision-makers face every day, plus get cost-effective solutions to real-life IT problems.
- Learn more >>
- Total Economic Impact of SQL Server 2008 Upgrade
-
Read the whitepaper to find out specific cost savings and efficiencies that your company could achieve.

- Click to download >>
- The best support in the Linux business
-
If Linux is going to power your mission-critical applications, you'd better have the best support known to business. Novell was rated the top provider of Linux technical support.

- Learn more >>
Meet Doc
-
Here to help you with your Document Management Needs
- Doc is an enigma. Born to a Russian ballerina and a German electrical engineer, he grew up in various locations in the United States. He’s seen the insides of more brands, versions, and generations of printer and printer-related hardware than almost anyone.
- To learn more about this mysterious figure check out his blog on ZDNet and his Workspace on TechRepublic. You’ll be glad you did.
-
Produced by
ZDNet and







