[8767] in bugtraq

home help back first fref pref prev next nref lref last post

Re: DCC HiJacking patch for BitchX 75p1

daemon@ATHENA.MIT.EDU (Andy Dills)
Tue Dec 22 04:21:25 1998

Date: 	Mon, 21 Dec 1998 16:27:13 -0500
Reply-To: Bugtraq List <BUGTRAQ@NETSPACE.ORG>
From: Andy Dills <andy@SS5.XECU.NET>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To:  <362A2A77.3ECB8B4A@tin.it>

On Sun, 18 Oct 1998, Alessio Orlandi wrote:

> the ports will be quiet consecutive. Bad.. Bad... So.. let's add a
> random value to the port returned by the system. All is now fixed.
> Patch follows

Your patch changes the order, but there is still order.

You need to call srand() once before using rand, to ensure actual
randonimity.

Andy
--
System Administrator
XecuNet Internet Services

home help back first fref pref prev next nref lref last post