nanog mailing list archives

Re: Kiss-o'-death packets?


From: "Peter Galbavy" <peter.galbavy () knowtion net>
Date: Mon, 6 Oct 2003 19:40:04 +0100


E.B. Dreger wrote:
HTTP implementations have had vulnerabilities due to insufficient
checking.  Thus HTTP is a bad idea.

SMTP implementations have had vulnerabilities due to insufficient
checking.  Thus SMTP is a bad idea.

SNMP implementations have had vulnerabilities due to insufficient
checking.  Thus SNMP is a bad idea.

Come to think of it, IP stacks have had vulnerabilities due to
insufficient checking.  IP is a bad idea, too.

No, please do not twist my words; I referrred to poor implementations of
good ideas. Nowhere did I say that the protocol is bad as a result of poor
implementations.

Peter


Current thread: