Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 30 Aug 2007 16:05:50 -0400
From:      "Chris Buechler" <cbuechler@gmail.com>
Cc:        freebsd-pf@freebsd.org
Subject:   Re: ping of death
Message-ID:  <d64aa1760708301305u790a1bc6p8a742816d76789d2@mail.gmail.com>
In-Reply-To: <107702.63851.qm@web53701.mail.re2.yahoo.com>
References:  <107702.63851.qm@web53701.mail.re2.yahoo.com>

next in thread | previous in thread | raw e-mail | index | archive | help

On 8/30/07, Lorenz Helleis <lorenzhelleis@yahoo.com.br> wrote:
> Nessus give it to me:
>
> Mensagem:
> The machine crashed when pinged with an incorrectly fragmented packet.
> This is known as the 'jolt' or 'ping of death' denial of service attack.
>
> An attacker may use this flaw to shut down this server,
> thus preventing you from working properly.
>
> Solution : contact your operating system vendor for a patch.
>
> How can i fix this using pf ??
>

You'll have to be a whole lot more specific - did a machine actually
crash? If not, that's a false positive from Nessus.  If so, what
machine crashed? One running FreeBSD with pf? One behind a firewall
running FreeBSD with pf?

-Chris



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?d64aa1760708301305u790a1bc6p8a742816d76789d2>