From owner-freebsd-security Thu Nov 20 10:18:03 1997 Return-Path: Received: (from root@localhost) by hub.freebsd.org (8.8.7/8.8.7) id KAA23193 for security-outgoing; Thu, 20 Nov 1997 10:18:03 -0800 (PST) (envelope-from owner-freebsd-security) Received: from iskh122.haninge.kth.se (ul@iskh122.haninge.kth.se [130.237.83.122]) by hub.freebsd.org (8.8.7/8.8.7) with ESMTP id KAA23178 for ; Thu, 20 Nov 1997 10:17:55 -0800 (PST) (envelope-from dev.random@dev.random.nu) From: dev.random@dev.random.nu Received: from localhost (random@localhost) by iskh122.haninge.kth.se (8.8.7/8.8.7) with SMTP id TAA03690; Thu, 20 Nov 1997 19:15:45 +0100 (CET) (envelope-from dev.random@dev.random.nu) Date: Thu, 20 Nov 1997 19:15:45 +0100 (CET) X-Sender: random@iskh122.haninge.kth.se To: Robert Watson cc: freebsd-security@FreeBSD.ORG Subject: Re: new TCP/IP bug in win95 (fwd) In-Reply-To: Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-security@FreeBSD.ORG X-Loop: FreeBSD.org Precedence: bulk I actually didnt test it myself, but I had a 2.2.5-STABLE, 2.2.2-RELEASE, and 3.0-CURRENT box blown away all about in the same time period. The 2.2.5-RELENG & 2.1.7-RELEASE weren't blown away, but that was because the router was configured correctly to not allow outside packets claiming to be internal packets. However, on the boxes where I have no router access, I did this quick fix: ipfw add 1 deny log all from 130.237.83.122 to 130.237.83.122 via vx0 _________________________________________________________________ thomas stromberg % sysadmin(royal.institute.of.technology@haninge/stockholm) smtp(dev.random@dev.random.nu)%irc(devrandom)%talkd(random@dev.random.nu)