[59719] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Working vulnerability? (Cisco exploit)

daemon@ATHENA.MIT.EDU (David A. Ulevitch)
Fri Jul 18 09:35:28 2003

In-Reply-To: <000e01c34d2f$e47636a0$0000fea9@aurumtechnology.com>
Date: Fri, 18 Jul 2003 08:33:55 -0500 (CDT)
From: "David A. Ulevitch" <davidu@everydns.net>
To: nanog@merit.edu
Errors-To: owner-nanog-outgoing@merit.edu



<quote who="Ken Yeo">
>
> Is this true:
>
> http://www.eweek.com/article2/0,3959,1196496,00.asp
>
> **there is a working exploit for this vulnerability but that it has not
> been
> released yet.**

No, it is not true.  The exploit *has* been released:

http://www.netsys.com/cgi-bin/displaynews?a=611

http://lists.netsys.com/pipermail/full-disclosure/2003-July/011421.html
http://lists.netsys.com/pipermail/full-disclosure/2003-July/011420.html

-davidu

----------------------------------------------------
   David A. Ulevitch -- http://david.ulevitch.com
  http://everydns.net -+- http://communitycolo.net
Campus Box 6957 + Washington University in St. Louis
----------------------------------------------------

home help back first fref pref prev next nref lref last post