[18009] in bugtraq
Re: Killing ircds via DNS
daemon@ATHENA.MIT.EDU (David Luyer)
Mon Dec 11 14:37:01 2000
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-Id: <200012110123.eBB1NuD26787@typhaon.pacific.net.au>
Date: Mon, 11 Dec 2000 12:23:56 +1100
Reply-To: David Luyer <david_luyer@PACIFIC.NET.AU>
From: David Luyer <david_luyer@PACIFIC.NET.AU>
X-To: Piotr Kucharski <chopin@sgh.waw.pl>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: Message from Piotr Kucharski <chopin@SGH.WAW.PL> of "Fri, 08 Dec
2000 19:59:51 BST." <20001208195951.Y8012@sgh.waw.pl>
> On Wed, Dec 06, 2000 at 08:02:59PM +1100, David Luyer wrote:
> > It appears some people have discovered a bug in various IRCd's res.c.
>
> IRCnet ircd had this bug fixed on 19 Jun 1997, release 2.9.3 was
> clean. As far as we can see, other irc daemons like hybrid, ircu,
> bahamut are not affected. The only one we could trace to have it
> was old dalnet dreamforge, so it could be all based on it are
> vulnerable.
Well, it was also in austhex, which was where I saw it. There are many irc
daemons out there, and I wouldn't be surprised if a number were based on
old dalnet code.
David.
--
David Luyer Phone: +61 3 9674 7525
Senior Network Engineer P A C I F I C Fax: +61 3 9699 8693
Pacific Internet (Australia) I N T E R N E T Mobile: +61 4 1111 2983
http://www.pacific.net.au/ NASDAQ: PCNTF