[Pkg-erlang-devel] Bug#585122: Possible security bug

Peter Schwindt peter+bdo at schwindt-net.de
Sun Feb 6 02:29:01 UTC 2011


tags 585122 security
thanks

As mentioned at http://person.zju.edu.cn/page1/ejabberd-en.htm#htoc67 a
remotely accessable epmd is a possible security problem where anyone can
connect with a rogue erlang node having full access at your node and its
(for example) mnesia data (think ejabberd).

Apart from that the suggested solution only helps on single-user
systems; sockets might be the better thing to implement.






More information about the Pkg-erlang-devel mailing list