[59709] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Cisco IOS Vulnerability

daemon@ATHENA.MIT.EDU (joshua sahala)
Fri Jul 18 03:19:13 2003

From: joshua sahala <joshua.ej.smith@usa.net>
To: Daniel Karrenberg <daniel.karrenberg@ripe.net>,
	Andy Dills <andy@xecu.net>
Date: Fri, 18 Jul 2003 03:18:09 -0400
Cc: Jack Bates <jbates@brightok.net>,
	Sean Donelan <sean@donelan.com>,
	Mikael Abrahamsson <swmike@swm.pp.se>, nanog@merit.edu
In-Reply-To: <20030718070443.GB2950@reifa-wave.karrenberg.net>
Errors-To: owner-nanog-outgoing@merit.edu


On Friday 18 July 2003 03:04, Daniel Karrenberg wrote:
[cut]
>
> The luck will not stretch to noone having the source code to a
> version of IOS with the probelm or the imagination necessary to
> find it without source.
>
> Daniel

cisco posted what the four 'bad' protocol types were in rev 1.3 of the 
online doc - now it is just an academic exercise to get them crafted 
correctly........no imagination necessary, only a router,  a cco 
login, and a traffic generator needed

/joshua

-- 
What difference does it make to the dead, the orphans, and the 
homeless, whether the mad destruction is brought under the name of 
totalitarianism or the holy name of liberty and democracy?

 - Gandhi -



home help back first fref pref prev next nref lref last post