PHPBB worm going around!!!

General Discussion of atomic repo and development projects.

Ask for help here with anything else not covered by other forums.
horse[USA]
Forum User
Forum User
Posts: 17
Joined: Fri Dec 03, 2004 6:09 pm

PHPBB worm going around!!!

Unread post by horse[USA] »

A worm is going around the net attacking sites running phpBB <2.0.11 with php <4.3.10.
Version 2.0.11 is the only safe version, upgrade to it now if you are not running it and upgrade php to fix the hole.
Information
http://www.securiteam.com/unixfocus/6J00O15BPS.html
http://www.f-secure.com/weblog/
http://www.phpbb.com/phpBB/viewtopic.ph ... ernosanity
scott
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin
Posts: 8355
Joined: Wed Dec 31, 1969 8:00 pm
Location: earth
Contact:

Unread post by scott »

For those of you running Grsec, this doesnt effect you
Griffith
Forum User
Forum User
Posts: 95
Joined: Tue Dec 07, 2004 1:32 pm

Unread post by Griffith »

scott:
could you make a rpm of mod_security?
scott
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin
Posts: 8355
Joined: Wed Dec 31, 1969 8:00 pm
Location: earth
Contact:

Unread post by scott »

you know I worked on mod_security a while back, it really requires a lot of tuning to get working right in a hosting environment. In the end I just stopped using it. I still might do another one I, but it didnt really solve any problems that grsec and snort werent already covering
Post Reply