Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 19 Dec 1998 17:10:36 +0100
From:      Rico Pajarola <pajarola@cybertime.ch>
To:        security@FreeBSD.ORG
Subject:   nmap crashes inetd/portmap on 2.2.6
Message-ID:  <3.0.32.19981219170558.0080a8c0@www.dlc.cybertime.ch>

index | next in thread | raw e-mail

portscanning with nmap results in inetd crashing/hanging on FBSD 2.2.6
which makes an excellent DoS attack. Portmap is also affected, inetd hangs
initializing rpc/udp services when you HUP it, making it somewhat more
complicated to recover, as you'll have to restart all rpc services (in the
correct order). It is not always reproducible (sometimes you need to try
several times with different flags to nmap). I couldn't crash inetd on
FBSD-Current (may 28 1998) so I guess it has been fixed. Are there any
known issues I missed? other os are vulnerable as well (still testing).

Rico Pajarola


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message


help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3.0.32.19981219170558.0080a8c0>