WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-devel

Re: [Xen-devel] http://www.fsmware.com/xenofreebsd/ dead?

Am Montag, den 11.04.2005, 10:39 -0700 schrieb Kip Macy:
> It looks as if someone was trying to do something inappropriate and
> Apache choked.
> 
> 
>        -Kip
> 
> 69.240.141.47 - - [07/Apr/2005:05:52:28 -0700] "GET
> /scripts/..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 304
> "-" "-"
[...]

Some worm or virus exploiting MS-IIS "double decoding directory
traversal" (CVE-2001-0333), probably good old nimda. See

<http://www.iss.net/security_center/advice/Intrusions/2000645/default.htm>

Should not bother apache at all, i doubt this is responsible for the
oops.

/nils.


> On Apr 11, 2005 10:34 AM, Kip Macy <kip.macy@xxxxxxxxx> wrote:
> > Sorry. Apache periodically stops working. I just restarted it.
> > 
> >            -Kip
> > 
> > On Apr 11, 2005 5:07 AM, Nils Toedtmann <xen-devel@xxxxxxxxxxxxxxxxxx> 
> > wrote:
> > > Just wanted to try domU freebsd and found
> > >
> > >   <http://216.239.59.104/search?q=cache:M_4r1b-RG-
> > > EJ:www.fsmware.com/xenofreebsd/5.3/xenbsdsetup.txt&hl=en&lr=&strip=1>
> > >
> > > but the webservice on www.fsmware.com seems to be down/unavailable. Any
> > > mirror? Or other working FreeBSD domU-kernels & images?
[...]


_______________________________________________
Xen-devel mailing list
Xen-devel@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-devel