You must have missed RaQXTR-en-Security-0.0.1-9353.pkg, OR after installation you have
not
turned off/on the DNS service (or rebooted the machine). AFAIK BIND 8.2.3-RELEASE
which is contained
in this pkg is not vulnerable.
>Which update are we talking about. I have all Cobalt patches installed on
>that machine. Are you referring to other updates?
>
>Before the servers were turned off, not only the index.html for root sites
>was changed, but even ASP files and several others were replaced with that
>"Signature or Statement".
>
>How would this worm got into the server if it was updated....
With regards,
Taco Scargo
Professional Services Manager, EMEA
Sun Microsystems Tel. +31 (71) 565 7021
Server Appliance Business Unit [EMAIL PROTECTED]
_______________________________________________
cobalt-developers mailing list
[EMAIL PROTECTED]
http://list.cobalt.com/mailman/listinfo/cobalt-developers