At 2:22 PM -0500 3/20/02, Neil Herber nospam  imposed structure on a 
stream of electrons, yielding:
>It is rumored that on or about 2002-03-20 12:06 PM -0700, Cerebus 
>the Ardvark wrote as follows:
>>>I received an official court notice this afternoon to turn over 
>>>all information relation to ORBZ accounts. This came from the 10th 
>>>Judicial District court of theState of Michigan. It appears that 
>>>ORBZ may be facing criminal charges for denial of service relating 
>>>to the Lotus Domino issue.
>>
>>This simply has to stop.  I am so sick of corporations making law 
>>with the force of their money.  The claim is absurd on it's face 
>>since ORBZ has never ever ever ever blocked a single message from 
>>anyone to anyone.  Ever.
>
>According to the little I have read on this topic, one of the spam 
>probes used by ORBZ triggered a known problem in Domino servers that 
>then caused an infinite internal mail loop - hence DOS.
>
>The "victim", understandably angry, probably decided that he had a 
>much better chance of suing ORBZ or getting them charged than he 
>would of suing IBM or getting a fix for the problem in Domino.

It gets better: this problem was absolutely positively reported to 
Lotus years ago, but has survived in everything they have put out 
since ccMail days, until it was reported by Ian Gulliver of ORBZ in 
August. In September, IBM issued the patch.

>I hate to think what would happen if every Domino server on the net 
>were to receive one of these loop inducers sent through some 
>Taiwanese open relay no longer flagged by ORBZ.

I have zero sympathy for the idiot admin who had a mail server with a 
crashing bug that was remotely and trivially open to tickling, had 
been disclosed in detail on the net's most watched vulnerability list 
by someone who openly went around doing exactly what poked this bug, 
and for which there has been a patch available for 6 months.

If I were her boss, she'd be looking for work. Yesterday.

That doesn't mean that ORBZ is right.

-- 
Bill Cole                                  
[EMAIL PROTECTED]


#############################################################
This message is sent to you because you are subscribed to
  the mailing list <[EMAIL PROTECTED]>.
To unsubscribe, E-mail to: <[EMAIL PROTECTED]>
To switch to the DIGEST mode, E-mail to <[EMAIL PROTECTED]>
To switch to the INDEX mode, E-mail to <[EMAIL PROTECTED]>
Send administrative queries to  <[EMAIL PROTECTED]>

Reply via email to