GEN: New Worm Targets Linux Systems

From: art fougner, md (evsono@pipeline.com)
Tue Nov 8 05:55:03 2005


Head's up to EL and all those who rely on Linux.

New worm targets Linux systems By Joris Evers Staff Writer, CNET News.com Published: November 7, 2005, 5:12 PM PST

A new worm that propagates by exploiting security vulnerabilities in Web server software is attacking Linux systems, warned antivirus companies on Monday.

The worm spreads by exploiting Web servers that host susceptible scripts at specific locations, according to antivirus software maker McAfee, which has named the worm "Lupper."

Lupper blindly attacks Web servers, installing and executing a copy of the worm when a vulnerable server is found, McAfee said in its description of the worm.

A backdoor is installed on infected servers, giving the attacker remote control over the system. The server joins a network of compromised systems, which can be used, for example, in attacks against other computers, according to McAfee.

The worm exploits three vulnerabilities to propagate the XML-RPC for PHP Remote Code Injection vulnerability; AWStats Rawlog Plugin Logfile Parameter Input Validation vulnerability; and Darryl Burgdorf's Webhints Remote Command Execution Vulnerability, according to Symantec's online description of the worm.

http://news.com.com/New+worm+targets+Linux+systems/2100-7349_3-5938475.html?tag=nefd.top

--
art fougner, md

"I knew I was going to take the wrong train, so I left early." Lawrence Peter Berra





use when must restrict search to only the ob-gyn-l forum...
Enter search keywords:
Returns per screen: Require all keywords:

Return to  OB-GYN-L Mail a New Message to the Forum: ob-gyn-l@obgyn.net
Forum Administrator: geffrey.klein@obgyn.net
Report Technical Problems: webmaster@obgyn.net
Last Updated: Mon Nov 2 05:00:21 2009

The American Medical Association is no longer designating CME hours for AMA Category II CME credit. However, physicians themselves may self designate learning activities as Category II CME credit hours if they feel it is of sufficient educational merit and meets the formal definitions of continuing medical education. OBGYN.net believes these interaction in this forum meets these criteria. For further information see the AMA web site.