Clamav out of date

Mario Vukelic mario.vukelic at dantian.org
Thu Oct 11 19:35:07 UTC 2007


On Thu, 2007-10-11 at 15:18 -0400, Harold Hartley wrote:
> As long as you have a firewall, most any distro should be able to
> handle being seen by the internet running ftp server or web server or
> any type of internet app for connecting to...


Technically this is not correct. I'm not saying that any of this applies
to Feisty, but still:

If you run a server you have to open ports in your firewall, and have
daemons (services) listening on those ports. Hence, you do not have a
firewall on those ports, at least facing some of the users (though you
can use the firewall to keep specific IPs away from those ports).

If the daemons have exploitable holes, then you can be successfully
attacked. Thus, not "any distro" is able to handle server tasks on the
internet, _especially not for something as known insecure as ftp.

And talking about "any type of internet app" is nonsense and dangerous.
For a risk assessment that is not completely worthless, you need to
discuss any individual service and their various exploit scenarios in
detail.







More information about the ubuntu-users mailing list