November 6, 2000

Weekly Linux security digest

Author: JT Smith

"Some ugly problems were found this week in SWAT. Remote attackers can execute a denial of
service, or try to brute-force usernames and passwords. However, if you log these attempts, local
users on the server can potentially gain root access, or simply look at the log file for the usernames
and passwords of users that log in successfully to manage Samba via SWAT." From Security Portal.


