[6786] in bugtraq
Re: easy DoS in most RPC apps
daemon@ATHENA.MIT.EDU (David LeBlanc)
Sun May 17 12:07:50 1998
Date: Sun, 17 May 1998 11:49:43 -0400
Reply-To: David LeBlanc <dleblanc@MINDSPRING.COM>
From: David LeBlanc <dleblanc@MINDSPRING.COM>
X-To: Peter van Dijk <peter@attic.vuurwerk.nl>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To: <Pine.LNX.3.96.980515023144.21720R-100000@koek.attic.vuurwe rk.nl>
At 02:35 AM 5/15/98 +0200, Peter van Dijk wrote:
>Finally, I'm quite sure of this: the bug is in Sun's RPC code.
>Investigations show Linux, FreeBSD, SunOS, System V and NeXTstep machines
>are affected, which means we've got a _big_ problem here.
If that's the case, then any ports of these utilities running on Windows NT
would also exhibit the same problem - we're all running off of pretty much
the same Sun ONC RPC code.
David LeBlanc
dleblanc@mindspring.com