Security Incidents mailing list archives

SSLwrap exploit ?


From: Dmitry Alyabyev <dimitry () al org ua>
Date: Wed, 28 Feb 2001 19:05:03 +0200

hi

There is some strange thing with sslwrap. Periodically I see a lot of
such messages in my kernel log:

pid 42470 (sslwrap), uid 65534: exited on signal 11
pid 42472 (sslwrap), uid 65534: exited on signal 11
pid 42475 (sslwrap), uid 65534: exited on signal 11
pid 42476 (sslwrap), uid 65534: exited on signal 11
pid 45175 (sslwrap), uid 65534: exited on signal 11
pid 45176 (sslwrap), uid 65534: exited on signal 11
pid 45177 (sslwrap), uid 65534: exited on signal 11
pid 45178 (sslwrap), uid 65534: exited on signal 11

sslwrap runs by inetd and corresponding line of inetd.conf is:
imaps   stream  tcp     nowait  nobody  /usr/local/sbin/sslwrap sslwrap  -cert /usr/local/openssl/certs/imaps.pem -port 
imap4

Version of sslwrap is 2.0.5, FreeBSD 3.4-STABLE

Ideas ?

--
Dimitry


Current thread: