Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 31 Aug 1999 23:21:43 -0400
From:      Laurence Berland <stuyman@confusion.net>
To:        Liam Slusser <liam@tiora.net>
Cc:        Kevin Lynn <klynn@santacruz.org>, Peter Kok <cckok00@stlinux.ouhk.edu.hk>, security@FreeBSD.ORG
Subject:   Re: hotmail
Message-ID:  <37CC9BC7.45CE961E@confusion.net>
References:  <Pine.GSO.4.05.9908312011040.675-100000@kinetic.tiora.net>

next in thread | previous in thread | raw e-mail | index | archive | help
Last I heard the frontend that served up the pages was FreeBSD, and the
mail backend for incoming and outgoing mail was Solaris.  BTW the
exploit was just telling the cgi script you wanted the post-login page
or some page just after login that you wanted that page, and it just
assumed that you were already authenticated (which you weren't). 
Nothing to do with freebsd, just a bad cgi program.

Liam Slusser wrote:
> 
> I thought hotmail was using Sun hardware running Solaris?  Anybody
> know?
> 
> liam
> 
> System Administrator Tiora Networks | www.tiora.net <---- tiora's webpage
> www.tiora.net/~liam <----- homepage | liam@tiora.net <-- my email address
> Lowered turbo powered Honda Civic's are really cool. <---------- my quote
> 
> On Tue, 31 Aug 1999, Kevin Lynn wrote:
> 
> > Yes.. but chances are it's because of a security hole that wasn't because
> > of freebsd as slashdot posted something about the security hole being
> > exploitable via some web page that would let you read other peoples mail.
> >
> > Kevin
> >
> > On Wed, 1 Sep 1999, Peter Kok wrote:
> >
> > > Hello all
> > >
> > > I heard from news that hotmail was broken and the service was forced to
> > > stop about two hours.  As i know hotmail is operated by freebsd.  Is it
> > > about the security of freebsd?
> > > Now I would like to know more about security of freebsd.
> > >
> > >  thank you
> > >
> > >  regards
> > >  Peter
> > >
> > >
> > >
> > > To Unsubscribe: send mail to majordomo@FreeBSD.org
> > > with "unsubscribe freebsd-security" in the body of the message
> > >
> >
> >
> >
> > To Unsubscribe: send mail to majordomo@FreeBSD.org
> > with "unsubscribe freebsd-security" in the body of the message
> >
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message

-- 
Laurence Berland, Stuyvesant HS Debate
<><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><>
Windows 98: n.
        useless extension to a minor patch release for 
        32-bit extensions and a graphical shell for a 
        16-bit patch to an 8-bit operating system 
        originally coded for a 4-bit microprocessor, 
        written by a 2-bit company that can't stand for
        1 bit of competition.
http://stuy.debate.net
icq #7434346                    aol imer E1101
The above email Copyright (C) 1999 Laurence Berland
All rights reserved


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?37CC9BC7.45CE961E>