TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your message to
[EMAIL PROTECTED]  Contact [EMAIL PROTECTED] for help with any problems!
----------------------------------------------------------------------------

XForce is aware of a bug in HTTP_BrownOrifice introduced in XPU 5.1.

It has been fixed in XPU 5.2, due to be released shortly.



David Means
Internet Security Systems
XForce R&D Software Engineer


-----Original Message-----
From: Huber, Robert (FUSA) [mailto:[EMAIL PROTECTED]]
Sent: Monday, August 19, 2002 4:45 PM
To: '[EMAIL PROTECTED]'
Subject: HTTP BROWN ORIFICE - RS 6.5



TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your message to
[EMAIL PROTECTED]  Contact [EMAIL PROTECTED] for help with any problems!
----------------------------------------------------------------------------

I know most of thee go unanswered, but does anyone have any idea what
triggers the brown orifice alert?  We are getting a ton of alerts on port 80
traffic from our proxies.  I'm guessing they are false positives as we do
not run much in the way of netscape, unless the vuln is also in IE.  We are
running RS 6.5.

Bob


**********************************************************************
This transmission may contain information that is privileged, confidential and/or 
exempt from disclosure under applicable law. If you are not the intended recipient, 
you are hereby notified that any disclosure, copying, distribution, or use of the 
information contained herein (including any reliance thereon) is STRICTLY PROHIBITED. 
If you received this transmission in error, please immediately contact the sender and 
destroy the material in its entirety, whether in electronic or hard copy format. Thank 
you
**********************************************************************




Reply via email to