exploit in 4.1.2?

Marc marc "at" arctic.net
Thu Feb 15 16:56:01 2007


After the exploit was discussed and the recommendation was made 
to install the updated code,  I went to every box and downloaded 
the free edition to each machine. I don't have the version 
number in front of me but this was a couple of months ago. 
There was subsequent discussion on the list as to whether 
someone who saw notice about the exploit was seeing the advisory 
about the initial exploit or an exploit in a new version.

It looks to me like what I am seeing is either the remainder of 
an earlier exploit taking advantage of a system after install of 
the newer version,  or an exploit in the newer version.

Is there a detailed FAQ about clean up from the earlier exploit 
to consult to make sure that it is not the former.....