Hi, I just noticed that my machine got hammered (well, at 25kbps) with tons of port 37 connections for the past week. Anything known regarding recent security problems with that? I run a quite-up-to-date testing machine, and I follow the Debian DSAs and take action where the lacking security support for testing requires me to do so, so it shouldn't be a known old problem. To be careful, I have now reinstalled kernel, libc, psutils, coreutils and sysvinit from known-good sources. Newest chkrootkit Debian pkg doesn't detect anything, and after reboot the traffic has stopped. (Oh, yes: time service has also be disabled in inetd.conf) cheers -- vbi -- The content of this message may or may not reflect the opinion of me, my employer, my girlfriend, my cat or anybody else, regardless of the fact whether such an employer, girlfriend, cat, or anybody else exists. I (or my employer, girlfriend, cat or whoever) disclaim any legal obligations resulting from the above message. You, as the reader of this message, may or may not have the permission to redistribute this message as a whole or in parts, verbatim or in modified form, or to distribute any message at all.
Attachment:
pgpWU2U5lYfB9.pgp
Description: signature