[5097] in bugtraq

home help back first fref pref prev next nref lref last post

Re: CPSR #8: identd Denial of Service

daemon@ATHENA.MIT.EDU (Curt Sampson)
Mon Aug 4 15:55:34 1997

Date: 	Mon, 4 Aug 1997 11:19:41 -0700
Reply-To: Curt Sampson <cjs@PORTAL.CA>
From: Curt Sampson <cjs@PORTAL.CA>
X-To:         Corinne Posse Releases <releases@CORINNE.MAC.EDU>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To:  <Pine.NEB.3.95.970804091757.25418A-100000@corinne.cpio.org>

Two notes regarding this:

1. I can't get the exploit to work under NetBSD-current or NetBSD-1.2.
It makes hundreds of connections, but I still have only one identd
running, and it's not spinning.

2. A few years back, when NetBSD's identd had a bug in it that
would cause it to spin all on its own, I didn't even notice a half
a dozen of these running on a 486. When I saw them in a ps or saw
the load aerage go up to 6 I'd go and kill them, so I never tested
how many I needed to run to even start to notice any performance
degradation. But it was a lot more than 3.

cjs

home help back first fref pref prev next nref lref last post