April 15, 2001

Alcatel security note reveals more than it should

There's a couple of stories, one from morons.org and another from the Associated Press that describe a security flaw
in an
DSL modem ... that's not so interesting. What's interesting is that the document they released about it reveals more than they meant to reveal. It's a Microsoft Word document, and you can go back and see the changes originally made it in. Here's part of what supposedly was taken out: "As a result, Alcatel has started an initiative to qualify
firewall software that will provide users with the highest
possible degree of security.

(When and where will the firewall software be available? CERT has
said that they don?t believe that installing a firewall is the
answer. What are you doing to provide a legitimate fix?)"


