[12192] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Win95/98 and Novell client DoS

daemon@ATHENA.MIT.EDU (Richard Reiner)
Sat Oct 9 14:45:32 1999

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Message-Id:  <37FE92D6.640B7F4B@fscinternet.com>
Date:         Fri, 8 Oct 1999 20:56:54 -0400
Reply-To: Richard Reiner <rreiner@FSCINTERNET.COM>
From: Richard Reiner <rreiner@FSCINTERNET.COM>
X-To:         Bruce Dennison <dennis_b@POPMAIL.FIRN.EDU>,
              BUGTRAQ@SECURITYFOCUS.COM
To: BUGTRAQ@SECURITYFOCUS.COM

> Perhaps this has been reported.  I havent seen it.  If it has been
> previously reported, sorry.  Consider this a reminder.
>
> Novell client opens port 427 TCP.  My services file reports this port to be
> known as 'svrloc'.  You can bluescreen Win95/98 with Novell Client versions
> 3.0 and 3.0.1 by sending a SYN to this port, as you would with 'nmap -sS -p
> 427 <target>'.  This is quite fatal.  The only recovery seems to be a power
> reset.

Yes, we reported this (and posted to BUGTRAQ) late in 1998.

home help back first fref pref prev next nref lref last post