Dear Subscriber,
This is the monthly reminder of subscription information for the
pacnog list, hosted at APNIC.
For subscription information including how to un-subscribe go to
http://mailman.apnic.net/mailman/listinfo/pacnog
Thank you for participating in this discussion.
Kind Regards,
List administrator
This is an automated weekly mailing describing the state of the Internet
Routing Table as seen from APNIC's router in Japan.
Daily listings are sent to bgp-stats(a)lists.apnic.net
For historical data, please see http://thyme.apnic.net.
If you have any comments please contact Philip Smith <pfs(a)cisco.com>.
Routing Table Report 04:00 +10GMT Sat 26 Jun, 2010
Report Website: http://thyme.apnic.net
Detailed Analysis: http://thyme.apnic.net/current/
Analysis Summary
----------------
BGP routing table entries examined: 323205
Prefixes after maximum aggregation: 149101
Deaggregation factor: 2.17
Unique aggregates announced to Internet: 158363
Total ASes present in the Internet Routing Table: 34231
Prefixes per ASN: 9.44
Origin-only ASes present in the Internet Routing Table: 29720
Origin ASes announcing only one prefix: 14411
Transit ASes present in the Internet Routing Table: 4511
Transit-only ASes present in the Internet Routing Table: 108
Average AS path length visible in the Internet Routing Table: 3.6
Max AS path length visible: 24
Max AS path prepend of ASN (41664) 21
Prefixes from unregistered ASNs in the Routing Table: 295
Unregistered ASNs in the Routing Table: 112
Number of 32-bit ASNs allocated by the RIRs: 642
Prefixes from 32-bit ASNs in the Routing Table: 757
Special use prefixes present in the Routing Table: 0
Prefixes being announced from unallocated address space: 159
Number of addresses announced to Internet: 2251743840
Equivalent to 134 /8s, 54 /16s and 226 /24s
Percentage of available address space announced: 60.8
Percentage of allocated address space announced: 65.5
Percentage of available address space allocated: 92.8
Percentage of address space in use by end-sites: 83.4
Total number of prefixes smaller than registry allocations: 154204
APNIC Region Analysis Summary
-----------------------------
Prefixes being announced by APNIC Region ASes: 78033
Total APNIC prefixes after maximum aggregation: 26885
APNIC Deaggregation factor: 2.90
Prefixes being announced from the APNIC address blocks: 74858
Unique aggregates announced from the APNIC address blocks: 33140
APNIC Region origin ASes present in the Internet Routing Table: 4081
APNIC Prefixes per ASN: 18.34
APNIC Region origin ASes announcing only one prefix: 1117
APNIC Region transit ASes present in the Internet Routing Table: 639
Average APNIC Region AS path length visible: 3.6
Max APNIC Region AS path length visible: 15
Number of APNIC addresses announced to Internet: 525628704
Equivalent to 31 /8s, 84 /16s and 117 /24s
Percentage of available APNIC address space announced: 78.3
APNIC AS Blocks 4608-4864, 7467-7722, 9216-10239, 17408-18431
(pre-ERX allocations) 23552-24575, 37888-38911, 45056-46079
55296-56319, 131072-132095
APNIC Address Blocks 1/8, 14/8, 27/8, 43/8, 58/8, 59/8, 60/8,
61/8, 110/8, 111/8, 112/8, 113/8, 114/8, 115/8,
116/8, 117/8, 118/8, 119/8, 120/8, 121/8, 122/8,
123/8, 124/8, 125/8, 126/8, 133/8, 175/8, 180/8,
182/8, 183/8, 202/8, 203/8, 210/8, 211/8, 218/8,
219/8, 220/8, 221/8, 222/8, 223/8,
ARIN Region Analysis Summary
----------------------------
Prefixes being announced by ARIN Region ASes: 133710
Total ARIN prefixes after maximum aggregation: 69226
ARIN Deaggregation factor: 1.93
Prefixes being announced from the ARIN address blocks: 106681
Unique aggregates announced from the ARIN address blocks: 41819
ARIN Region origin ASes present in the Internet Routing Table: 13744
ARIN Prefixes per ASN: 7.76
ARIN Region origin ASes announcing only one prefix: 5271
ARIN Region transit ASes present in the Internet Routing Table: 1349
Average ARIN Region AS path length visible: 3.4
Max ARIN Region AS path length visible: 22
Number of ARIN addresses announced to Internet: 729671968
Equivalent to 43 /8s, 125 /16s and 233 /24s
Percentage of available ARIN address space announced: 62.1
ARIN AS Blocks 1-1876, 1902-2042, 2044-2046, 2048-2106
(pre-ERX allocations) 2138-2584, 2615-2772, 2823-2829, 2880-3153
3354-4607, 4865-5119, 5632-6655, 6912-7466
7723-8191, 10240-12287, 13312-15359, 16384-17407
18432-20479, 21504-23551, 25600-26591,
26624-27647, 29696-30719, 31744-33791
35840-36863, 39936-40959, 46080-47103
53248-55295, 393216-394239
ARIN Address Blocks 3/8, 4/8, 6/8, 7/8, 8/8, 9/8, 11/8,
12/8, 13/8, 15/8, 16/8, 17/8, 18/8, 19/8,
20/8, 21/8, 22/8, 24/8, 26/8, 28/8, 29/8,
30/8, 32/8, 33/8, 34/8, 35/8, 38/8, 40/8,
44/8, 45/8, 47/8, 48/8, 50/8, 52/8, 54/8,
55/8, 56/8, 63/8, 64/8, 65/8, 66/8, 67/8,
68/8, 69/8, 70/8, 71/8, 72/8, 73/8, 74/8,
75/8, 76/8, 96/8, 97/8, 98/8, 99/8, 107/8,
108/8, 173/8, 174/8, 184/8, 199/8, 204/8, 205/8,
206/8, 207/8, 208/8, 209/8, 214/8, 215/8, 216/8,
RIPE Region Analysis Summary
----------------------------
Prefixes being announced by RIPE Region ASes: 74437
Total RIPE prefixes after maximum aggregation: 43213
RIPE Deaggregation factor: 1.72
Prefixes being announced from the RIPE address blocks: 67581
Unique aggregates announced from the RIPE address blocks: 44362
RIPE Region origin ASes present in the Internet Routing Table: 14549
RIPE Prefixes per ASN: 4.65
RIPE Region origin ASes announcing only one prefix: 7512
RIPE Region transit ASes present in the Internet Routing Table: 2159
Average RIPE Region AS path length visible: 3.9
Max RIPE Region AS path length visible: 24
Number of RIPE addresses announced to Internet: 432412960
Equivalent to 25 /8s, 198 /16s and 25 /24s
Percentage of available RIPE address space announced: 75.8
RIPE AS Blocks 1877-1901, 2043, 2047, 2107-2136, 2585-2614
(pre-ERX allocations) 2773-2822, 2830-2879, 3154-3353, 5377-5631
6656-6911, 8192-9215, 12288-13311, 15360-16383
20480-21503, 24576-25599, 28672-29695
30720-31743, 33792-35839, 38912-39935
40960-45055, 47104-52223, 196608-197631
RIPE Address Blocks 2/8, 25/8, 31/8, 46/8, 51/8, 62/8, 77/8,
78/8, 79/8, 80/8, 81/8, 82/8, 83/8, 84/8,
85/8, 86/8, 87/8, 88/8, 89/8, 90/8, 91/8,
92/8, 93/8, 94/8, 95/8, 109/8, 176/8, 178/8,
193/8, 194/8, 195/8, 212/8, 213/8, 217/8,
LACNIC Region Analysis Summary
------------------------------
Prefixes being announced by LACNIC Region ASes: 28719
Total LACNIC prefixes after maximum aggregation: 6891
LACNIC Deaggregation factor: 4.17
Prefixes being announced from the LACNIC address blocks: 27171
Unique aggregates announced from the LACNIC address blocks: 14182
LACNIC Region origin ASes present in the Internet Routing Table: 1304
LACNIC Prefixes per ASN: 20.84
LACNIC Region origin ASes announcing only one prefix: 400
LACNIC Region transit ASes present in the Internet Routing Table: 232
Average LACNIC Region AS path length visible: 3.9
Max LACNIC Region AS path length visible: 24
Number of LACNIC addresses announced to Internet: 75105792
Equivalent to 4 /8s, 122 /16s and 6 /24s
Percentage of available LACNIC address space announced: 56.0
LACNIC AS Blocks 26592-26623, 27648-28671, 52224-53247,
262144-263167 plus ERX transfers
LACNIC Address Blocks 177/8, 181/8, 186/8, 187/8, 189/8, 190/8, 200/8,
201/8,
AfriNIC Region Analysis Summary
-------------------------------
Prefixes being announced by AfriNIC Region ASes: 7302
Total AfriNIC prefixes after maximum aggregation: 1850
AfriNIC Deaggregation factor: 3.95
Prefixes being announced from the AfriNIC address blocks: 5623
Unique aggregates announced from the AfriNIC address blocks: 1730
AfriNIC Region origin ASes present in the Internet Routing Table: 374
AfriNIC Prefixes per ASN: 15.03
AfriNIC Region origin ASes announcing only one prefix: 111
AfriNIC Region transit ASes present in the Internet Routing Table: 84
Average AfriNIC Region AS path length visible: 3.7
Max AfriNIC Region AS path length visible: 14
Number of AfriNIC addresses announced to Internet: 19523328
Equivalent to 1 /8s, 41 /16s and 231 /24s
Percentage of available AfriNIC address space announced: 58.2
AfriNIC AS Blocks 36864-37887, 327680-328703 & ERX transfers
AfriNIC Address Blocks 41/8, 197/8,
APNIC Region per AS prefix count summary
----------------------------------------
ASN No of nets /20 equiv MaxAgg Description
4766 1847 8407 482 Korea Telecom (KIX)
7545 1335 232 107 TPG Internet Pty Ltd
17488 1319 140 127 Hathway IP Over Cable Interne
4755 1314 295 154 TATA Communications formerly
17974 1141 283 23 PT TELEKOMUNIKASI INDONESIA
9583 997 74 491 Sify Limited
24560 923 306 170 Bharti Airtel Ltd., Telemedia
4134 876 21292 408 CHINANET-BACKBONE
4808 829 1572 215 CNCGROUP IP network: China169
9829 794 681 34 BSNL National Internet Backbo
Complete listing at http://thyme.apnic.net/current/data-ASnet-APNIC
ARIN Region per AS prefix count summary
---------------------------------------
ASN No of nets /20 equiv MaxAgg Description
6389 3910 3733 288 bellsouth.net, inc.
4323 2711 1114 395 Time Warner Telecom
1785 1795 698 129 PaeTec Communications, Inc.
20115 1559 1520 653 Charter Communications
7018 1506 5736 957 AT&T WorldNet Services
2386 1285 568 908 AT&T Data Communications Serv
6478 1283 260 110 AT&T Worldnet Services
3356 1180 10889 405 Level 3 Communications, LLC
22773 1166 2861 66 Cox Communications, Inc.
11492 1154 207 71 Cable One
Complete listing at http://thyme.apnic.net/current/data-ASnet-ARIN
RIPE Region per AS prefix count summary
---------------------------------------
ASN No of nets /20 equiv MaxAgg Description
35805 644 56 6 United Telecom of Georgia
3292 453 2027 393 TDC Tele Danmark
30890 444 111 206 Evolva Telecom
9198 411 202 13 Kazakhtelecom Data Network Ad
702 410 1869 326 UUNET - Commercial IP service
8551 400 353 46 Bezeq International
8866 400 117 18 Bulgarian Telecommunication C
3320 372 7329 323 Deutsche Telekom AG
3301 371 1414 326 TeliaNet Sweden
34984 360 89 185 BILISIM TELEKOM
Complete listing at http://thyme.apnic.net/current/data-ASnet-RIPE
LACNIC Region per AS prefix count summary
-----------------------------------------
ASN No of nets /20 equiv MaxAgg Description
8151 1462 3017 250 UniNet S.A. de C.V.
10620 1057 237 152 TVCABLE BOGOTA
28573 1003 784 97 NET Servicos de Comunicao S.A
7303 745 385 114 Telecom Argentina Stet-France
6503 677 175 216 AVANTEL, S.A.
22047 547 310 15 VTR PUNTO NET S.A.
3816 492 214 78 Empresa Nacional de Telecomun
7738 477 922 30 Telecomunicacoes da Bahia S.A
14420 468 32 69 ANDINATEL S.A.
11172 450 99 76 Servicios Alestra S.A de C.V
Complete listing at http://thyme.apnic.net/current/data-ASnet-LACNIC
AfriNIC Region per AS prefix count summary
------------------------------------------
ASN No of nets /20 equiv MaxAgg Description
8452 1162 445 10 TEDATA
24863 726 147 39 LINKdotNET AS number
36992 641 279 187 Etisalat MISR
3741 269 852 230 The Internet Solution
33776 219 12 11 Starcomms Nigeria Limited
2018 211 244 61 Tertiary Education Network
6713 195 186 16 Itissalat Al-MAGHRIB
24835 189 78 10 RAYA Telecom - Egypt
29571 175 17 10 Ci Telecom Autonomous system
29975 133 506 14 Vodacom
Complete listing at http://thyme.apnic.net/current/data-ASnet-AFRINIC
Global Per AS prefix count summary
----------------------------------
ASN No of nets /20 equiv MaxAgg Description
6389 3910 3733 288 bellsouth.net, inc.
4323 2711 1114 395 Time Warner Telecom
4766 1847 8407 482 Korea Telecom (KIX)
1785 1795 698 129 PaeTec Communications, Inc.
20115 1559 1520 653 Charter Communications
7018 1506 5736 957 AT&T WorldNet Services
8151 1462 3017 250 UniNet S.A. de C.V.
7545 1335 232 107 TPG Internet Pty Ltd
17488 1319 140 127 Hathway IP Over Cable Interne
4755 1314 295 154 TATA Communications formerly
Complete listing at http://thyme.apnic.net/current/data-ASnet
Global Per AS Maximum Aggr summary
----------------------------------
ASN No of nets Net Savings Description
4323 2711 2316 Time Warner Telecom
1785 1795 1666 PaeTec Communications, Inc.
4766 1847 1365 Korea Telecom (KIX)
7545 1335 1228 TPG Internet Pty Ltd
8151 1462 1212 UniNet S.A. de C.V.
17488 1319 1192 Hathway IP Over Cable Interne
6478 1283 1173 AT&T Worldnet Services
4755 1314 1160 TATA Communications formerly
8452 1162 1152 TEDATA
17974 1141 1118 PT TELEKOMUNIKASI INDONESIA
Complete listing at http://thyme.apnic.net/current/data-CIDRnet
List of Unregistered Origin ASNs (Global)
-----------------------------------------
Bad AS Designation Network Transit AS Description
16927 UNALLOCATED 12.0.252.0/23 7018 AT&T WorldNet Servic
15132 UNALLOCATED 12.9.150.0/24 7018 AT&T WorldNet Servic
32567 UNALLOCATED 12.14.170.0/24 7018 AT&T WorldNet Servic
13746 UNALLOCATED 12.24.56.0/24 7018 AT&T WorldNet Servic
32567 UNALLOCATED 12.25.107.0/24 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.152.0/24 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.154.0/23 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.155.0/24 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.159.0/24 7018 AT&T WorldNet Servic
25639 UNALLOCATED 12.41.169.0/24 7018 AT&T WorldNet Servic
Complete listing at http://thyme.apnic.net/current/data-badAS
Advertised Unallocated Addresses
--------------------------------
Network Origin AS Description
31.0.0.0/16 12654 RIPE NCC RIS Project
31.1.0.0/21 12654 RIPE NCC RIS Project
31.1.24.0/24 12654 RIPE NCC RIS Project
41.222.79.0/24 36938 >>UNKNOWN<<
41.223.92.0/22 36936 >>UNKNOWN<<
41.223.188.0/24 22351 Intelsat
41.223.189.0/24 6453 Teleglobe Inc.
41.223.196.0/24 36990 Alkan Telecom Ltd
41.223.197.0/24 36990 Alkan Telecom Ltd
41.223.198.0/24 36990 Alkan Telecom Ltd
Complete listing at http://thyme.apnic.net/current/data-add-IANA
Number of prefixes announced per prefix length (Global)
-------------------------------------------------------
/1:0 /2:0 /3:0 /4:0 /5:0 /6:0
/7:0 /8:20 /9:10 /10:25 /11:68 /12:196
/13:406 /14:707 /15:1283 /16:11140 /17:5339 /18:9140
/19:18372 /20:22877 /21:22846 /22:29912 /23:29457 /24:168471
/25:971 /26:1252 /27:619 /28:31 /29:47 /30:9
/31:0 /32:7
Advertised prefixes smaller than registry allocations
-----------------------------------------------------
ASN No of nets Total ann. Description
6389 2505 3910 bellsouth.net, inc.
4766 1482 1847 Korea Telecom (KIX)
4323 1396 2711 Time Warner Telecom
1785 1258 1795 PaeTec Communications, Inc.
11492 1066 1154 Cable One
17488 1066 1319 Hathway IP Over Cable Interne
8452 1050 1162 TEDATA
18566 1040 1059 Covad Communications
10620 973 1057 TVCABLE BOGOTA
7018 911 1506 AT&T WorldNet Services
Complete listing at http://thyme.apnic.net/current/data-sXXas-nos
Number of /24s announced per /8 block (Global)
----------------------------------------------
1:2 2:2 4:13 8:288 12:2003 13:7
14:1 15:23 16:3 17:8 20:21 24:1434
27:121 31:1 32:49 33:12 38:679 40:98
41:2448 44:3 47:18 52:9 55:7 56:2
57:25 58:751 59:502 60:458 61:1074 62:1058
63:1976 64:3653 65:2356 66:4066 67:1822 68:1110
69:2878 70:694 71:237 72:1843 73:2 74:2105
75:250 76:308 77:930 78:615 79:421 80:972
81:793 82:490 83:436 84:703 85:1051 86:458
87:674 88:342 89:1566 90:93 91:2836 92:486
93:1067 94:1416 95:624 96:287 97:205 98:579
99:28 108:32 109:548 110:352 111:523 112:270
113:310 114:423 115:547 116:1069 117:660 118:482
119:938 120:143 121:739 122:1449 123:933 124:1116
125:1317 128:226 129:212 130:195 131:555 132:250
133:17 134:194 135:45 136:243 137:160 138:264
139:104 140:509 141:138 142:348 143:392 144:473
145:47 146:443 147:166 148:662 149:300 150:150
151:166 152:296 153:168 154:2 155:328 156:157
157:320 158:109 159:377 160:317 161:181 162:254
163:176 164:408 165:359 166:461 167:404 168:651
169:160 170:712 171:58 172:2 173:853 174:436
175:98 176:1 178:224 180:501 182:135 183:220
184:69 186:476 187:350 188:1087 189:782 190:3751
192:5746 193:4702 194:3364 195:2781 196:1169 198:3568
199:3449 200:5319 201:1556 202:7982 203:8250 204:4077
205:2319 206:2517 207:3103 208:3861 209:3449 210:2512
211:1261 212:1703 213:1680 214:657 215:69 216:4658
217:1516 218:491 219:378 220:1136 221:398 222:314
223:1
End of report
AusCERT Week in Review
25 June 2010
Web Log Entries:
- ----------------
Title: Australian House of Representatives cybercrime report released
Date: 22 June 2010
URL: http://www.auscert.org.au/12950
Alerts, Advisories and Updates:
- -------------------------------
Title: ASB-2010.0152 - [Win] Opera prior to 10.54: Cross-site scripting -
Remote with user interaction
Date: 24 June 2010
URL: http://www.auscert.org.au/12963
Title: ASB-2010.0153 - [UNIX/Linux] Apache Axis2 prior to 1.5.2 and 1.6:
Denial of service - Remote/unauthenticated
Date: 24 June 2010
URL: http://www.auscert.org.au/12964
Title: ASB-2010.0151 - [Win][UNIX/Linux] Firefox: Multiple vulnerabilities
Date: 23 June 2010
URL: http://www.auscert.org.au/12961
Title: ASB-2010.0150 - [Win] Novell Administration Console prior to version
3.1 Support Pack 2: Modify arbitrary files - Remote/unauthenticated
Date: 21 June 2010
URL: http://www.auscert.org.au/12949
External Security Bulletins:
- ----------------------------
Title: ESB-2009.1555.2 - UPDATE [Solaris][OpenSolaris] Transport Layer
Security and Secure Sockets Layer 3.0: Unauthorised access -
Remote/unauthenticated
Date: 24 June 2010
OS: Solaris, Solaris
URL: http://www.auscert.org.au/11992
Title: ESB-2010.0568 - [Linux][HP-UX][Solaris][AIX] IBM WebSphere
Application
Server: Cross-site scripting - Remote with user interaction
Date: 25 June 2010
OS: Solaris, Red Hat Linux, HP-UX, SUSE, AIX, Other Linux Variants,
Debian
GNU/Linux, Ubuntu
URL: http://www.auscert.org.au/12968
Title: ESB-2009.0568 -- [Win][Linux][HP-UX][Solaris] -- HP OpenView SNMP
Emanate Master Agent: Inappropriate Access
Date: 24 June 2010
OS: Solaris, HP-UX, Ubuntu, Debian GNU/Linux, Other Linux Variants, Red
Hat
Linux, Windows Server 2008, Windows Vista, Windows 2003, Windows
2000,
Windows XP
URL: http://www.auscert.org.au/11152
Title: ESB-2010.0567.2 - UPDATE [Win][Netware][RedHat][SUSE] Novell
iManager:
Multiple vulnerabilities
Date: 25 June 2010
OS: Windows 2003, Windows XP, SUSE, Windows 2000, Windows 7, Windows
Vista,
Windows Server 2008, Novell Netware, Windows 2003, Windows XP, SUSE,
Windows 2000, Windows 7, Windows Vista, Windows Server 2008, Novell
Netware
URL: http://www.auscert.org.au/12967
Title: ESB-2010.0566 - [HP-UX] Kerberos: Multiple vulnerabilities
Date: 24 June 2010
OS: HP-UX
URL: http://www.auscert.org.au/12966
Title: ESB-2010.0565 - [Win][UNIX/Linux] Drupal Third-party modules:
Multiple
vulnerabilities
Date: 24 June 2010
OS: Other BSD Variants, Windows XP, HP-UX, Debian GNU/Linux, Ubuntu, Mac
OS
X, Windows 7, Windows 2003, Red Hat Linux, Solaris, HP Tru64 UNIX,
IRIX, SUSE, OpenBSD, Windows 2000, AIX, FreeBSD, Windows Vista, Other
Linux Variants, Windows Server 2008
URL: http://www.auscert.org.au/12965
Title: ESB-2010.0564 - [RedHat] Firefox: Multiple vulnerabilities
Date: 23 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12962
Title: ESB-2010.0563 - [RedHat] rhev-hypervisor: Multiple vulnerabilities
Date: 23 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12960
Title: ESB-2010.0562 - [RedHat] vdsm: Access confidential data - Existing
account
Date: 23 June 2010
OS: Red Hat Linux, Virtualisation
URL: http://www.auscert.org.au/12959
Title: ESB-2010.0561 - [RedHat] Red Hat Enterprise Virtualization Manager:
Access confidential data - Existing account
Date: 23 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12958
Title: ESB-2010.0560 - [RedHat] seamonkey: Multiple vulnerabilities
Date: 23 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12957
Title: ESB-2010.0559 - [Netware] Novell NetWare: Execute arbitrary
code/commands - Remote/unauthenticated
Date: 22 June 2010
OS: Novell Netware
URL: http://www.auscert.org.au/12956
Title: ESB-2010.0558 - [Win][UNIX/Linux] SAP J2EE Engine Core: Unauthorised
access - Remote/unauthenticated
Date: 22 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Windows 2003, Red Hat Linux, Windows 7,
Mac OS X, Ubuntu, Debian GNU/Linux, Windows XP, HP-UX, Other BSD
Variants, SUSE, Windows 2000, OpenBSD, AIX, Windows Vista, FreeBSD,
Windows Server 2008, Other Linux Variants
URL: http://www.auscert.org.au/12955
Title: ESB-2010.0557 - [UNIX/Linux][Ubuntu] opie: Denial of service - Remote
with user interaction
Date: 22 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Mac OS X, Ubuntu, Debian
GNU/Linux, HP-UX, Other BSD Variants, SUSE, OpenBSD, AIX, FreeBSD,
Other Linux Variants
URL: http://www.auscert.org.au/12954
Title: ESB-2010.0556 - [UNIX/Linux][Mandriva] SquirrelMail: Reduced security
-
Existing account
Date: 22 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Mac OS X, Ubuntu, Debian
GNU/Linux, HP-UX, Other BSD Variants, SUSE, OpenBSD, AIX, FreeBSD,
Other Linux Variants
URL: http://www.auscert.org.au/12953
Title: ESB-2010.0555 - Apple iOS 2.0 through 3.1.3 for iPhone 3G and iPod
touch: Multiple vulnerabilities
Date: 22 June 2010
URL: http://www.auscert.org.au/12952
Title: ESB-2010.0554 - [Win][Linux][Solaris][AIX] Novell Access Manager:
Execute arbitrary code/commands - Remote/unauthenticated
Date: 22 June 2010
OS: Solaris, Red Hat Linux, Windows 2003, Windows 7, Debian GNU/Linux,
Ubuntu, Windows XP, SUSE, Windows 2000, AIX, Windows Vista, Windows
Server 2008, Other Linux Variants
URL: http://www.auscert.org.au/12951
Title: ESB-2010.0553 - [Linux][HP-UX][Solaris][AIX] IBM WebSphere
Application
Server: Denial of service - Remote with user interaction
Date: 21 June 2010
OS: Solaris, Red Hat Linux, HP-UX, SUSE, AIX, Other Linux Variants,
Debian
GNU/Linux, Ubuntu
URL: http://www.auscert.org.au/12948
Title: ESB-2010.0552 - [Solaris] Extensible Firmware Interface: Denial of
service - Existing account
Date: 21 June 2010
OS: Solaris
URL: http://www.auscert.org.au/12947
===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072
Internet Email: auscert(a)auscert.org.au
Facsimile: (07) 3365 7031
Telephone: (07) 3365 4417 (International: +61 7 3365 4417)
AusCERT personnel answer during Queensland business hours
which are GMT+10:00 (AEST).
On call after hours for member emergencies only.
===========================================================================
-----BEGIN PGP SIGNATURE-----
Comment: http://www.auscert.org.au/render.html?it=1967
iD8DBQFMJEbM/iFOrG6YcBERAtSEAJ4zN3u13Qw/QpMRQRuvzjLHCNGQSACfb0jE
enoPCb4LftpJnnUlPmfoTac=
=az+B
-----END PGP SIGNATURE-----
Hi PacNOG list:
Here is a I am particularly interested in remote presenters, if you have
deployment/operational experiences. I would like to set up a SIP Phone
bridge for next time.
IPv6 - A Bigger, Stronger, Better Internet, Today and Tomorrow
Aloha Everyone,
The Hawaii IPv6 Task Force will hold its next meeting:
Wednesday June 23rd, 2010
6:30 - 8:30 PM Hawaiian Standard Time
UH Manoa Campus, POST 801
(24 June 04:30 - 06:30 GMT)
Video will start 15-20 minutes early.
Agenda will include:
- IPv6 appliance development
- Apple iOS v6
- THC-IPV6 Attack Toolkit
- Google Geo-IP-glitch
- HTCo v6 HIX peering
- North American IPv6 Task Force
- Facebook IPv6 trial
- Your Network updates
- IPv6 strategy for /your/ network
Everyone is welcome.
RSVP.
Refreshments will be provided (unfortunately, not to remote participants).
Parking: see UH Manoa visitor parking rules
<http://www.hawaii.edu/parking/visitorparking.html>:
http://www.hawaii.edu/parking/visitorparking.html
Remote participation will be available through the Ustream web site:
http://www.ustream.tv/channel/ipv6hawaiimeeting
You can submit comments and questions using the UStream chat application.
A phone bridge is available. Please email me:
alan.whinery(a)ipv6hawaii.org for details.
Meeting page: http://ipv6hawaii.org/?page_id=203
Visit http://ipv6hawaii.org for updates.
Please also forward this invitation message to interested parties. Your
participation and support are vital to the smooth and successful
deployment of IPv6 in Hawaii.
Many Thanks to:
Brian Chee, of UH for the nice room and beverages.
Task Force logistics staff for refreshments.
Much Mahalo.
Alan Whinery
President Hawaii IPv6 Task Force
Chief Network Engineer, University of Hawaii
alan.whinery(a)ipv6hawaii.org
Hi everyone,
Just a short update about PacNOG 7, which takes place from Monday 28th
June to Saturday 3rd July in American Samoa.
The website (http://www.pacnog.org/pacnog7/) has been updated with
agenda and more detailed workshop content, registration, accommodation,
and travel information.
If you haven't yet registered, please do so as soon as possible. Same
goes for arranging accommodation.
Hope to see you there!
Best wishes,
philip
--
Root Zone DNSSEC Deployment
Technical Status Update 2010-06-18
This is the ninth of a series of technical status updates intended
to inform a technical audience on progress in signing the root zone
of the DNS.
RESOURCES
Details of the project, including documentation published to date,
can be found at <http://www.root-dnssec.org/>.
We'd like to hear from you. If you have feedback for us, please
send it to rootsign(a)icann.org.
KSK CEREMONY 1 COMPLETE
The first KSK ceremony for the root zone was completed this week
in Culpeper, VA, USA. The Ceremony Administrator was Mehmet Akcin.
The first production KSK has now been generated. This is the key
that is scheduled to be put into service on 2010-07-15.
The first production Key Signing Request (KSR) generated by VeriSign
has now been processed by ICANN using the root zone KSK, and the
resulting Signed Key Response (KSR) has been accepted by VeriSign.
This SKR contains signatures for Q3 2010, for use between 2010-07-01
and 2010-09-30.
Audit materials relating to the first ceremony will be published
as soon as is practical, and in particular before 2010-07-15.
The KSK and SKR generated during this ceremony will not be approved
for production until the KSK key pair has been successfully transported
to ICANN's west-coast ceremony facility in El Segundo, CA, USA, and
placed in secure storage.
KSK CEREMONY 2 SCHEDULED
The second KSK ceremony for the root zone is scheduled to take place
in El Segundo, CA, USA on 2010-07-12. Replication of key materials
onto west-coast HSMs, enrolment of west-coast crypto officers and
processing of the Q4 2010 KSR (for production use between 2010-10-01
and 2010-12-31) will take place during this ceremony.
PLANNED DEPLOYMENT SCHEDULE
Already completed:
2010-01-27: L starts to serve DURZ
2010-02-10: A starts to serve DURZ
2010-03-03: M, I start to serve DURZ
2010-03-24: D, K, E start to serve DURZ
2010-04-14: B, H, C, G, F start to serve DURZ
2010-05-05: J starts to serve DURZ
2010-06-16: First Key Signing Key (KSK) Ceremony
To come:
2010-07-12: Second Key Signing Key (KSK) Ceremony
2010-07-15: Distribution of validatable, production, signed root
zone; publication of root zone trust anchor
(Please note that this schedule is tentative and subject to change
based on testing results or other unforeseen factors.)
This is an automated weekly mailing describing the state of the Internet
Routing Table as seen from APNIC's router in Japan.
Daily listings are sent to bgp-stats(a)lists.apnic.net
For historical data, please see http://thyme.apnic.net.
If you have any comments please contact Philip Smith <pfs(a)cisco.com>.
Routing Table Report 04:00 +10GMT Sat 19 Jun, 2010
Report Website: http://thyme.apnic.net
Detailed Analysis: http://thyme.apnic.net/current/
Analysis Summary
----------------
BGP routing table entries examined: 322870
Prefixes after maximum aggregation: 148946
Deaggregation factor: 2.17
Unique aggregates announced to Internet: 158175
Total ASes present in the Internet Routing Table: 34178
Prefixes per ASN: 9.45
Origin-only ASes present in the Internet Routing Table: 29680
Origin ASes announcing only one prefix: 14399
Transit ASes present in the Internet Routing Table: 4498
Transit-only ASes present in the Internet Routing Table: 104
Average AS path length visible in the Internet Routing Table: 3.6
Max AS path length visible: 25
Max AS path prepend of ASN (41664) 21
Prefixes from unregistered ASNs in the Routing Table: 266
Unregistered ASNs in the Routing Table: 114
Number of 32-bit ASNs allocated by the RIRs: 631
Prefixes from 32-bit ASNs in the Routing Table: 722
Special use prefixes present in the Routing Table: 0
Prefixes being announced from unallocated address space: 156
Number of addresses announced to Internet: 2247247968
Equivalent to 133 /8s, 242 /16s and 72 /24s
Percentage of available address space announced: 60.6
Percentage of allocated address space announced: 65.4
Percentage of available address space allocated: 92.8
Percentage of address space in use by end-sites: 83.3
Total number of prefixes smaller than registry allocations: 154420
APNIC Region Analysis Summary
-----------------------------
Prefixes being announced by APNIC Region ASes: 77483
Total APNIC prefixes after maximum aggregation: 26911
APNIC Deaggregation factor: 2.88
Prefixes being announced from the APNIC address blocks: 74300
Unique aggregates announced from the APNIC address blocks: 33095
APNIC Region origin ASes present in the Internet Routing Table: 4075
APNIC Prefixes per ASN: 18.23
APNIC Region origin ASes announcing only one prefix: 1119
APNIC Region transit ASes present in the Internet Routing Table: 639
Average APNIC Region AS path length visible: 3.6
Max APNIC Region AS path length visible: 15
Number of APNIC addresses announced to Internet: 523634976
Equivalent to 31 /8s, 54 /16s and 9 /24s
Percentage of available APNIC address space announced: 78.0
APNIC AS Blocks 4608-4864, 7467-7722, 9216-10239, 17408-18431
(pre-ERX allocations) 23552-24575, 37888-38911, 45056-46079
55296-56319, 131072-132095
APNIC Address Blocks 1/8, 14/8, 27/8, 43/8, 58/8, 59/8, 60/8,
61/8, 110/8, 111/8, 112/8, 113/8, 114/8, 115/8,
116/8, 117/8, 118/8, 119/8, 120/8, 121/8, 122/8,
123/8, 124/8, 125/8, 126/8, 133/8, 175/8, 180/8,
182/8, 183/8, 202/8, 203/8, 210/8, 211/8, 218/8,
219/8, 220/8, 221/8, 222/8, 223/8,
ARIN Region Analysis Summary
----------------------------
Prefixes being announced by ARIN Region ASes: 134278
Total ARIN prefixes after maximum aggregation: 69110
ARIN Deaggregation factor: 1.94
Prefixes being announced from the ARIN address blocks: 107051
Unique aggregates announced from the ARIN address blocks: 41720
ARIN Region origin ASes present in the Internet Routing Table: 13734
ARIN Prefixes per ASN: 7.79
ARIN Region origin ASes announcing only one prefix: 5267
ARIN Region transit ASes present in the Internet Routing Table: 1340
Average ARIN Region AS path length visible: 3.4
Max ARIN Region AS path length visible: 22
Number of ARIN addresses announced to Internet: 728209056
Equivalent to 43 /8s, 103 /16s and 150 /24s
Percentage of available ARIN address space announced: 62.0
ARIN AS Blocks 1-1876, 1902-2042, 2044-2046, 2048-2106
(pre-ERX allocations) 2138-2584, 2615-2772, 2823-2829, 2880-3153
3354-4607, 4865-5119, 5632-6655, 6912-7466
7723-8191, 10240-12287, 13312-15359, 16384-17407
18432-20479, 21504-23551, 25600-26591,
26624-27647, 29696-30719, 31744-33791
35840-36863, 39936-40959, 46080-47103
53248-55295, 393216-394239
ARIN Address Blocks 3/8, 4/8, 6/8, 7/8, 8/8, 9/8, 11/8,
12/8, 13/8, 15/8, 16/8, 17/8, 18/8, 19/8,
20/8, 21/8, 22/8, 24/8, 26/8, 28/8, 29/8,
30/8, 32/8, 33/8, 34/8, 35/8, 38/8, 40/8,
44/8, 45/8, 47/8, 48/8, 50/8, 52/8, 54/8,
55/8, 56/8, 63/8, 64/8, 65/8, 66/8, 67/8,
68/8, 69/8, 70/8, 71/8, 72/8, 73/8, 74/8,
75/8, 76/8, 96/8, 97/8, 98/8, 99/8, 107/8,
108/8, 173/8, 174/8, 184/8, 199/8, 204/8, 205/8,
206/8, 207/8, 208/8, 209/8, 214/8, 215/8, 216/8,
RIPE Region Analysis Summary
----------------------------
Prefixes being announced by RIPE Region ASes: 74245
Total RIPE prefixes after maximum aggregation: 43253
RIPE Deaggregation factor: 1.72
Prefixes being announced from the RIPE address blocks: 67494
Unique aggregates announced from the RIPE address blocks: 44391
RIPE Region origin ASes present in the Internet Routing Table: 14528
RIPE Prefixes per ASN: 4.65
RIPE Region origin ASes announcing only one prefix: 7502
RIPE Region transit ASes present in the Internet Routing Table: 2164
Average RIPE Region AS path length visible: 3.9
Max RIPE Region AS path length visible: 25
Number of RIPE addresses announced to Internet: 432216992
Equivalent to 25 /8s, 195 /16s and 27 /24s
Percentage of available RIPE address space announced: 75.8
RIPE AS Blocks 1877-1901, 2043, 2047, 2107-2136, 2585-2614
(pre-ERX allocations) 2773-2822, 2830-2879, 3154-3353, 5377-5631
6656-6911, 8192-9215, 12288-13311, 15360-16383
20480-21503, 24576-25599, 28672-29695
30720-31743, 33792-35839, 38912-39935
40960-45055, 47104-52223, 196608-197631
RIPE Address Blocks 2/8, 25/8, 31/8, 46/8, 51/8, 62/8, 77/8,
78/8, 79/8, 80/8, 81/8, 82/8, 83/8, 84/8,
85/8, 86/8, 87/8, 88/8, 89/8, 90/8, 91/8,
92/8, 93/8, 94/8, 95/8, 109/8, 176/8, 178/8,
193/8, 194/8, 195/8, 212/8, 213/8, 217/8,
LACNIC Region Analysis Summary
------------------------------
Prefixes being announced by LACNIC Region ASes: 28758
Total LACNIC prefixes after maximum aggregation: 6858
LACNIC Deaggregation factor: 4.19
Prefixes being announced from the LACNIC address blocks: 27214
Unique aggregates announced from the LACNIC address blocks: 14180
LACNIC Region origin ASes present in the Internet Routing Table: 1296
LACNIC Prefixes per ASN: 21.00
LACNIC Region origin ASes announcing only one prefix: 402
LACNIC Region transit ASes present in the Internet Routing Table: 227
Average LACNIC Region AS path length visible: 3.9
Max LACNIC Region AS path length visible: 24
Number of LACNIC addresses announced to Internet: 74639360
Equivalent to 4 /8s, 114 /16s and 232 /24s
Percentage of available LACNIC address space announced: 55.6
LACNIC AS Blocks 26592-26623, 27648-28671, 52224-53247,
262144-263167 plus ERX transfers
LACNIC Address Blocks 177/8, 181/8, 186/8, 187/8, 189/8, 190/8, 200/8,
201/8,
AfriNIC Region Analysis Summary
-------------------------------
Prefixes being announced by AfriNIC Region ASes: 7166
Total AfriNIC prefixes after maximum aggregation: 1816
AfriNIC Deaggregation factor: 3.95
Prefixes being announced from the AfriNIC address blocks: 5505
Unique aggregates announced from the AfriNIC address blocks: 1731
AfriNIC Region origin ASes present in the Internet Routing Table: 370
AfriNIC Prefixes per ASN: 14.88
AfriNIC Region origin ASes announcing only one prefix: 109
AfriNIC Region transit ASes present in the Internet Routing Table: 82
Average AfriNIC Region AS path length visible: 3.7
Max AfriNIC Region AS path length visible: 15
Number of AfriNIC addresses announced to Internet: 18911488
Equivalent to 1 /8s, 32 /16s and 145 /24s
Percentage of available AfriNIC address space announced: 56.4
AfriNIC AS Blocks 36864-37887, 327680-328703 & ERX transfers
AfriNIC Address Blocks 41/8, 197/8,
APNIC Region per AS prefix count summary
----------------------------------------
ASN No of nets /20 equiv MaxAgg Description
4766 1847 8407 482 Korea Telecom (KIX)
7545 1330 232 107 TPG Internet Pty Ltd
17488 1319 140 127 Hathway IP Over Cable Interne
4755 1310 294 154 TATA Communications formerly
17974 1011 270 50 PT TELEKOMUNIKASI INDONESIA
9583 995 73 490 Sify Limited
4134 983 21291 407 CHINANET-BACKBONE
24560 919 306 169 Bharti Airtel Ltd., Telemedia
4808 837 1572 215 CNCGROUP IP network: China169
9829 793 680 39 BSNL National Internet Backbo
Complete listing at http://thyme.apnic.net/current/data-ASnet-APNIC
ARIN Region per AS prefix count summary
---------------------------------------
ASN No of nets /20 equiv MaxAgg Description
6389 3911 3733 287 bellsouth.net, inc.
4323 3368 1114 395 Time Warner Telecom
1785 1793 698 129 PaeTec Communications, Inc.
20115 1553 1514 658 Charter Communications
7018 1513 5737 961 AT&T WorldNet Services
2386 1286 569 910 AT&T Data Communications Serv
6478 1284 260 84 AT&T Worldnet Services
3356 1181 10894 407 Level 3 Communications, LLC
22773 1166 2605 65 Cox Communications, Inc.
11492 1159 208 65 Cable One
Complete listing at http://thyme.apnic.net/current/data-ASnet-ARIN
RIPE Region per AS prefix count summary
---------------------------------------
ASN No of nets /20 equiv MaxAgg Description
35805 641 56 6 United Telecom of Georgia
3292 453 2026 393 TDC Tele Danmark
30890 444 111 206 Evolva Telecom
702 411 1869 327 UUNET - Commercial IP service
8551 400 353 46 Bezeq International
8866 400 117 18 Bulgarian Telecommunication C
3301 372 1422 327 TeliaNet Sweden
3320 370 7313 321 Deutsche Telekom AG
34984 360 89 185 BILISIM TELEKOM
9198 352 202 13 Kazakhtelecom Data Network Ad
Complete listing at http://thyme.apnic.net/current/data-ASnet-RIPE
LACNIC Region per AS prefix count summary
-----------------------------------------
ASN No of nets /20 equiv MaxAgg Description
8151 1520 2965 244 UniNet S.A. de C.V.
10620 1059 237 152 TVCABLE BOGOTA
28573 945 767 92 NET Servicos de Comunicao S.A
7303 720 383 102 Telecom Argentina Stet-France
6503 666 174 210 AVANTEL, S.A.
22047 546 310 15 VTR PUNTO NET S.A.
3816 482 212 77 Empresa Nacional de Telecomun
7738 477 922 30 Telecomunicacoes da Bahia S.A
14420 464 32 68 ANDINATEL S.A.
14117 450 31 14 Telefonica del Sur S.A.
Complete listing at http://thyme.apnic.net/current/data-ASnet-LACNIC
AfriNIC Region per AS prefix count summary
------------------------------------------
ASN No of nets /20 equiv MaxAgg Description
8452 1163 445 10 TEDATA
24863 720 147 39 LINKdotNET AS number
36992 640 278 186 Etisalat MISR
3741 269 852 230 The Internet Solution
33776 219 12 11 Starcomms Nigeria Limited
2018 211 244 61 Tertiary Education Network
6713 195 186 16 Itissalat Al-MAGHRIB
24835 188 78 10 RAYA Telecom - Egypt
29571 176 19 10 Ci Telecom Autonomous system
29975 133 506 14 Vodacom
Complete listing at http://thyme.apnic.net/current/data-ASnet-AFRINIC
Global Per AS prefix count summary
----------------------------------
ASN No of nets /20 equiv MaxAgg Description
6389 3911 3733 287 bellsouth.net, inc.
4323 3368 1114 395 Time Warner Telecom
4766 1847 8407 482 Korea Telecom (KIX)
1785 1793 698 129 PaeTec Communications, Inc.
20115 1553 1514 658 Charter Communications
8151 1520 2965 244 UniNet S.A. de C.V.
7018 1513 5737 961 AT&T WorldNet Services
7545 1330 232 107 TPG Internet Pty Ltd
17488 1319 140 127 Hathway IP Over Cable Interne
4755 1310 294 154 TATA Communications formerly
Complete listing at http://thyme.apnic.net/current/data-ASnet
Global Per AS Maximum Aggr summary
----------------------------------
ASN No of nets Net Savings Description
4323 3368 2973 Time Warner Telecom
1785 1793 1664 PaeTec Communications, Inc.
4766 1847 1365 Korea Telecom (KIX)
8151 1520 1276 UniNet S.A. de C.V.
7545 1330 1223 TPG Internet Pty Ltd
6478 1284 1200 AT&T Worldnet Services
17488 1319 1192 Hathway IP Over Cable Interne
4755 1310 1156 TATA Communications formerly
8452 1163 1153 TEDATA
22773 1166 1101 Cox Communications, Inc.
Complete listing at http://thyme.apnic.net/current/data-CIDRnet
List of Unregistered Origin ASNs (Global)
-----------------------------------------
Bad AS Designation Network Transit AS Description
16927 UNALLOCATED 12.0.252.0/23 7018 AT&T WorldNet Servic
15132 UNALLOCATED 12.9.150.0/24 7018 AT&T WorldNet Servic
32567 UNALLOCATED 12.14.170.0/24 7018 AT&T WorldNet Servic
13746 UNALLOCATED 12.24.56.0/24 7018 AT&T WorldNet Servic
32567 UNALLOCATED 12.25.107.0/24 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.152.0/24 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.154.0/23 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.155.0/24 7018 AT&T WorldNet Servic
26973 UNALLOCATED 12.39.159.0/24 7018 AT&T WorldNet Servic
25639 UNALLOCATED 12.41.169.0/24 7018 AT&T WorldNet Servic
Complete listing at http://thyme.apnic.net/current/data-badAS
Advertised Unallocated Addresses
--------------------------------
Network Origin AS Description
31.0.0.0/16 12654 RIPE NCC RIS Project
31.1.0.0/21 12654 RIPE NCC RIS Project
31.1.24.0/24 12654 RIPE NCC RIS Project
41.222.79.0/24 36938 >>UNKNOWN<<
41.223.92.0/22 36936 >>UNKNOWN<<
41.223.188.0/24 22351 Intelsat
41.223.189.0/24 6453 Teleglobe Inc.
41.223.196.0/24 36990 Alkan Telecom Ltd
41.223.197.0/24 36990 Alkan Telecom Ltd
41.223.198.0/24 36990 Alkan Telecom Ltd
Complete listing at http://thyme.apnic.net/current/data-add-IANA
Number of prefixes announced per prefix length (Global)
-------------------------------------------------------
/1:0 /2:0 /3:0 /4:0 /5:0 /6:0
/7:0 /8:20 /9:10 /10:25 /11:68 /12:194
/13:403 /14:703 /15:1283 /16:11117 /17:5327 /18:9044
/19:18356 /20:22585 /21:22805 /22:29734 /23:29309 /24:168896
/25:950 /26:1238 /27:617 /28:118 /29:47 /30:13
/31:0 /32:8
Advertised prefixes smaller than registry allocations
-----------------------------------------------------
ASN No of nets Total ann. Description
6389 2506 3911 bellsouth.net, inc.
4323 1852 3368 Time Warner Telecom
4766 1482 1847 Korea Telecom (KIX)
1785 1256 1793 PaeTec Communications, Inc.
11492 1071 1159 Cable One
17488 1066 1319 Hathway IP Over Cable Interne
8452 1051 1163 TEDATA
18566 1040 1059 Covad Communications
10620 975 1059 TVCABLE BOGOTA
7018 914 1513 AT&T WorldNet Services
Complete listing at http://thyme.apnic.net/current/data-sXXas-nos
Number of /24s announced per /8 block (Global)
----------------------------------------------
1:2 4:13 8:285 12:2003 13:7 14:1
15:23 16:3 17:8 20:21 24:1429 27:114
31:1 32:49 33:12 38:681 40:98 41:2437
44:3 47:18 52:9 55:9 56:2 57:25
58:747 59:502 60:458 61:1072 62:1070 63:1971
64:3651 65:2356 66:4259 67:1824 68:1114 69:2883
70:704 71:237 72:1836 73:2 74:2102 75:250
76:308 77:928 78:631 79:417 80:995 81:795
82:487 83:431 84:698 85:1047 86:461 87:692
88:341 89:1578 90:93 91:2818 92:472 93:1064
94:1414 95:612 96:284 97:323 98:580 99:28
108:32 109:528 110:345 111:518 112:265 113:302
114:421 115:548 116:1053 117:639 118:477 119:935
120:147 121:738 122:1449 123:927 124:1114 125:1308
128:226 129:214 130:195 131:553 132:244 133:17
134:196 135:45 136:235 137:162 138:264 139:104
140:510 141:137 142:348 143:392 144:476 145:50
146:442 147:168 148:662 149:300 150:152 151:166
152:295 153:168 154:2 155:328 156:156 157:325
158:107 159:375 160:316 161:181 162:255 163:171
164:408 165:342 166:465 167:404 168:786 169:164
170:703 171:57 172:2 173:840 174:613 175:93
176:1 178:187 180:487 182:119 183:225 184:62
186:469 187:356 188:1081 189:780 190:3777 192:5749
193:4700 194:3357 195:2774 196:1167 198:3586 199:3456
200:5356 201:1546 202:7976 203:8287 204:4076 205:2328
206:2520 207:3070 208:3873 209:3422 210:2505 211:1262
212:1748 213:1682 214:661 215:69 216:4667 217:1432
218:494 219:378 220:1138 221:413 222:311 223:1
End of report
AusCERT Week in Review
18 June 2010
Papers, Articles and other documents:
-------------------------------------
Title: AusCERT Malicious Feed XML Description
Date: 15 June 2010
URL: http://www.auscert.org.au/12928
Title: AusCERT Malicious Feed Other Description
Date: 15 June 2010
URL: http://www.auscert.org.au/12929
Alerts, Advisories and Updates:
-------------------------------
Title: ASB-2010.0147 - [Linux][BSD][Solaris] ISC DHCP: Denial of service -
Remote/unauthenticated
Date: 14 June 2010
URL: http://www.auscert.org.au/12922
Title: ASB-2010.0148 - [Win][UNIX/Linux] UnrealIRCd: Execute arbitrary
code/commands - Remote/unauthenticated
Date: 14 June 2010
URL: http://www.auscert.org.au/12923
Title: ASB-2010.0149 - [Win][UNIX/Linux] libtiff: Execute arbitrary
code/commands - Remote with user interaction
Date: 14 June 2010
URL: http://www.auscert.org.au/12924
External Security Bulletins:
----------------------------
Title: ESB-2010.0551 - [Win][UNIX/Linux] Drupal Third Party-Modules:
Cross-site scripting - Remote with user interaction
Date: 18 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Windows 2003, Windows 7,
Mac OS X, Ubuntu, Debian GNU/Linux, HP-UX, Windows XP, Other BSD
Variants, SUSE, OpenBSD, Windows 2000, AIX, FreeBSD, Windows Vista,
Other Linux Variants, Windows Server 2008
URL: http://www.auscert.org.au/12945
Title: ESB-2010.0550 - [UNIX/Linux][RedHat] cups: Multiple vulnerabilities
Date: 18 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Mac OS X, Ubuntu, Debian
GNU/Linux, HP-UX, Other BSD Variants, SUSE, OpenBSD, AIX, FreeBSD,
Other Linux Variants
URL: http://www.auscert.org.au/12944
Title: ESB-2010.0549 - [RedHat] java-1.5.0-ibm: Multiple vulnerabilities
Date: 18 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12943
Title: ESB-2010.0548 - [HP-UX] PHP: Multiple vulnerabilities
Date: 18 June 2010
OS: HP-UX
URL: http://www.auscert.org.au/12942
Title: ESB-2010.0547 - [HP-UX] Tomcat Servlet Engine: Multiple
vulnerabilities
Date: 18 June 2010
OS: HP-UX
URL: http://www.auscert.org.au/12941
Title: ESB-2010.0546 - [UNIX/Linux][Debian] pmount: Overwrite arbitrary
files
- Existing account
Date: 18 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Mac OS X, Debian
GNU/Linux, Ubuntu, HP-UX, Other BSD Variants, SUSE, OpenBSD, AIX,
FreeBSD, Other Linux Variants
URL: http://www.auscert.org.au/12940
Title: ESB-2010.0545 - [Debian] sudo: Increased privileges - Existing
account
Date: 18 June 2010
OS: Debian GNU/Linux
URL: http://www.auscert.org.au/12939
Title: ESB-2010.0544 - [Win][UNIX/Linux] Drupal Third Party-Modules:
Cross-site scripting - Remote with user interaction
Date: 17 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Windows 2003, Windows 7,
Mac OS X, Ubuntu, Debian GNU/Linux, HP-UX, Windows XP, Other BSD
Variants, SUSE, OpenBSD, Windows 2000, AIX, FreeBSD, Windows Vista,
Other Linux Variants, Windows Server 2008
URL: http://www.auscert.org.au/12938
Title: ESB-2010.0543 - [AIX] OpenSSH: Provide misleading information -
Remote
with user interaction
Date: 17 June 2010
OS: AIX
URL: http://www.auscert.org.au/12937
Title: ESB-2010.0542 - [OpenVMS] HP SSL: Multiple vulnerabilities
Date: 17 June 2010
OS: HP-UX
URL: http://www.auscert.org.au/12936
Title: ESB-2010.0541 - ALERT [RedHat] samba: Root compromise -
Remote/unauthenticated
Date: 17 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12935
Title: ESB-2010.0540 - ALERT [UNIX/Linux][Debian] samba: Root compromise -
Remote/unauthenticated
Date: 17 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Mac OS X, Debian
GNU/Linux, Ubuntu, HP-UX, Other BSD Variants, SUSE, OpenBSD, AIX,
FreeBSD, Other Linux Variants
URL: http://www.auscert.org.au/12934
Title: ESB-2010.0539 - ALERT [Win] iTunes: Multiple vulnerabilities
Date: 17 June 2010
OS: Windows XP, Windows 7, Windows Vista
URL: http://www.auscert.org.au/12933
Title: ESB-2010.0538 - [UNIX/Linux][RedHat] sudo: Increased privileges -
Existing account
Date: 16 June 2010
OS: IRIX, HP Tru64 UNIX, Solaris, Red Hat Linux, Mac OS X, Ubuntu, Debian
GNU/Linux, HP-UX, Other BSD Variants, SUSE, OpenBSD, AIX, FreeBSD,
Other Linux Variants
URL: http://www.auscert.org.au/12932
Title: ESB-2010.0537 - [RedHat] kernel: Multiple vulnerabilities
Date: 16 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12931
Title: ESB-2010.0536 - ALERT [Mac][OSX] Mac OS X: Multiple vulnerabilities
Date: 16 June 2010
OS: Mac OS X
URL: http://www.auscert.org.au/12930
Title: ESB-2010.0535 - [RedHat] Red Hat Network Satellite Server IBM Java
Runtime: Multiple vulnerabilities
Date: 15 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12927
Title: ESB-2010.0534 - [RedHat] flash-plugin: Multiple vulnerabilities
Date: 15 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12926
Title: ESB-2010.0533 - [SUSE] SUSE: Multiple vulnerabilities
Date: 15 June 2010
OS: SUSE
URL: http://www.auscert.org.au/12925
Title: ESB-2010.0532 - [Appliance] Zero Day Initiative: Access confidential
data - Remote/unauthenticated
Date: 14 June 2010
URL: http://www.auscert.org.au/12921
Title: ESB-2010.0531 - [Win][Netware][Mac][OSX] mod_proxy_http: Access
confidential data - Remote/unauthenticated
Date: 14 June 2010
OS: Windows 2003, Windows XP, Windows 2000, Windows 7, Windows Vista, Mac
OS X, Windows Server 2008, Novell Netware
URL: http://www.auscert.org.au/12920
Title: ESB-2010.0530 - [Debian] cacti: Execute arbitrary code/commands -
Remote/unauthenticated
Date: 14 June 2010
OS: Debian GNU/Linux
URL: http://www.auscert.org.au/12919
Title: ESB-2010.0529 - [RedHat] flash-plugin: Multiple vulnerabilities
Date: 14 June 2010
OS: Red Hat Linux
URL: http://www.auscert.org.au/12918
Title: ESB-2010.0520.2 - UPDATE [Win][Linux][HP-UX][Solaris] HP OpenView
Network Node Manager: Execute arbitrary code/commands -
Remote/unauthenticated
Date: 15 June 2010
OS: Solaris, Red Hat Linux, Windows 2003, Windows 7, Debian GNU/Linux,
Ubuntu, Windows XP, HP-UX, SUSE, Windows 2000, Windows Vista, Windows
Server 2008, Other Linux Variants, Solaris, Windows 2003, Red Hat
Linux, Windows 7, Debian GNU/Linux, Ubuntu, Windows XP, HP-UX, SUSE,
Windows 2000, Windows Vista, Windows Server 2008, Other Linux
Variants
URL: http://www.auscert.org.au/12901
Title: ESB-2010.0502.2 - UPDATE [Debian] bind9: Provide misleading
information
- Remote/unauthenticated
Date: 16 June 2010
OS: Debian GNU/Linux, Debian GNU/Linux
URL: http://www.auscert.org.au/12880
Title: ESB-2010.0443.2 - UPDATE [Win] HP MFP Digital Sending Software:
Unauthorised access - Existing account
Date: 14 June 2010
OS: Windows 2003, HP-UX, Windows XP, Windows 2000, Windows 7, Windows
Vista, Windows Server 2008, Windows 2003, HP-UX, Windows XP, Windows
2000, Windows 7, Windows Vista, Windows Server 2008
URL: http://www.auscert.org.au/12801
Title: ESB-2010.0092.2 - UPDATE [Win][VMware ESX][Linux] VMWare: Multiple
vulnerabilities
Date: 14 June 2010
OS: Windows 2003, Red Hat Linux, Windows 7, Debian GNU/Linux, Ubuntu,
Windows XP, Virtualisation, SUSE, Windows 2000, Windows Vista, Other
Linux Variants, Windows Server 2008, Windows 2003, Red Hat Linux,
Windows 7, Debian GNU/Linux, Ubuntu, Windows XP, Virtualisation,
SUSE,
Windows 2000, Windows Vista, Other Linux Variants, Windows Server
2008
URL: http://www.auscert.org.au/12313
===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072
Internet Email: auscert(a)auscert.org.au
Facsimile: (07) 3365 7031
Telephone: (07) 3365 4417 (International: +61 7 3365 4417)
AusCERT personnel answer during Queensland business hours
which are GMT+10:00 (AEST).
On call after hours for member emergencies only.
===========================================================================