Bugtraq mailing list archives
Re: Urgent !! Serious Linux Security Bug....
From: zwobada () apogee-com fr (Jean-Francois Zwobada)
Date: Mon, 21 Oct 1996 19:12:45 +0200
Henrik P Johnson wrote:
On Sun, 20 Oct 1996, Jason T. Luttgens wrote:Today we saw an email from Linus Torvalds advising of a problem with Linux and ping. Basically you can reboot a linux box remotely if some scenario's are right. From what we can tell and this has all been verified is: If anyone in the world with a Windows 95 machine can ping your Linux box they can potentially reboot that machine.. Hence a serious denial of service OR loss of data.
BSDish Unices (BSD/OS v2.1, SunOS 4.1.x) and Solaris 2.5 don't reply. NT just responds.
This also works on HPUX 10.1, when I tried it I got a system panic and the machine hang and didn't reboot.
Another good bug of the week for the Scriptors of Doom :o) -- _____ Jean-Francois Zwobada (mailto:zwobada () apogee-com fr) _______ Apogee Communications Tel : +33 (1) 69 85 56 47 Fax : +33 (1) 69 85 56 48 This guy is powered by a Z81 - Best Viewed using plain text _________________________________________________________________
Current thread:
- Re: Urgent !! Serious Linux Security Bug...., (continued)
- Re: Urgent !! Serious Linux Security Bug.... Henrik P Johnson (Oct 21)
- Re: Urgent !! Serious Linux Security Bug.... Keith Bower (Oct 21)
- Re: Urgent !! Serious Linux Security Bug.... Marc MERLIN (Oct 21)
- Re: Urgent !! Serious Linux Security Bug.... Stefanita Valeriu Vilcu (Oct 22)
- Re: Urgent !! Serious Linux Security Bug.... Jon Lewis (Oct 22)
- Ping exploit program Bill Fenner (Oct 22)
- Re: BoS: Ping exploit program Darren Reed (Oct 23)
- Re: Urgent !! Serious Linux Security Bug.... Henrik P Johnson (Oct 21)
- Re: Urgent !! Serious Linux Security Bug.... Valdis.Kletnieks () vt edu (Oct 21)
- Re: Urgent !! Serious Linux Security Bug.... Jon Lewis (Oct 21)
- Re: Urgent !! Serious Linux Security Bug.... Jochen Friedrich (Oct 22)
- The Ping Denial of Service bug on almost all Unixes The Ghost who Admins (Oct 22)
- Re: The Ping Denial of Service bug on almost all Unixes Brett L. Hawn (Oct 22)
- Re: The Ping Denial of Service bug on almost all Unixes itudps (Oct 22)
- Re: Urgent !! Serious Linux Security Bug.... Ron DuFresne (Oct 22)