Bugtraq mailing list archives

Re: remote DoS against inetd and ssh


From: j () 4U NET (Jedi/Sector One)
Date: Wed, 8 Sep 1999 13:31:50 +0200


Grzegorz Stelmaszek wrote:
At the beginning i'd like to excuse all of you if it is commonly well
known (hmm, i guess it is, but noone patched it ;>.

Both DoS`s use something known as portfuck (e.g. `while true; do telnet
host port & done`).
1. If you use it against any inetd service, inetd will shoutdown that
service for about 30 minutes (i did not checked, but it seems to be about
that time).

  This kind of DoS can be avoided by using G2S and IPLimit instead of
Inetd.
  Check out http://www.jedi.claranet.fr for these programs.

--
         Frank DENIS aka Jedi/Sector One aka DJ Chrysalis <j () 4u net>
                 -> Music : http://www.mp3.com/chrysalis <-



Current thread: