[10391] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Link-layer security flaws

daemon@ATHENA.MIT.EDU (Phillip Vandry)
Thu Apr 29 18:32:57 1999

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-Id: <199904291948.PAA19634@Iodine.Mlink.NET>
Date: 	Thu, 29 Apr 1999 15:48:29 -0400
Reply-To: Phillip Vandry <vandry@MLINK.NET>
From: Phillip Vandry <vandry@MLINK.NET>
X-To:         Illuminatus Primus <vermont@GATE.NET>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To:  Your message of "Thu, 29 Apr 1999 12:50:33 EDT." 
              <19990429125033.O269@oto.valueweb.net>

> PPP's escape character is '~', and any occurences of this character
> must be escaped.  So, to double the effectiveness of a ping flood,
> pings can be filled with a tilde.  DoS

Note that this only applies to asynchronous HDLC like encapsulation for
PPP. With true HDLC, this attack will still do damage, but only to the tune
of a 12.5% degradation.

So it rarely has any effect except on the network edge where you might find
a modem.

-Phil

home help back first fref pref prev next nref lref last post