[18009] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Killing ircds via DNS

daemon@ATHENA.MIT.EDU (David Luyer)
Mon Dec 11 14:37:01 2000

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-Id:  <200012110123.eBB1NuD26787@typhaon.pacific.net.au>
Date:         Mon, 11 Dec 2000 12:23:56 +1100
Reply-To: David Luyer <david_luyer@PACIFIC.NET.AU>
From: David Luyer <david_luyer@PACIFIC.NET.AU>
X-To:         Piotr Kucharski <chopin@sgh.waw.pl>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  Message from Piotr Kucharski <chopin@SGH.WAW.PL> of "Fri, 08 Dec
              2000 19:59:51 BST." <20001208195951.Y8012@sgh.waw.pl>

> On Wed, Dec 06, 2000 at 08:02:59PM +1100, David Luyer wrote:
> > It appears some people have discovered a bug in various IRCd's res.c.
>
> IRCnet ircd had this bug fixed on 19 Jun 1997, release 2.9.3 was
> clean. As far as we can see, other irc daemons like hybrid, ircu,
> bahamut are not affected. The only one we could trace to have it
> was old dalnet dreamforge, so it could be all based on it are
> vulnerable.

Well, it was also in austhex, which was where I saw it.  There are many irc
daemons out there, and I wouldn't be surprised if a number were based on
old dalnet code.

David.
--
David Luyer                                        Phone:   +61 3 9674 7525
Senior Network Engineer        P A C I F I C       Fax:     +61 3 9699 8693
Pacific Internet (Australia)  I N T E R N E T      Mobile:  +61 4 1111 2983
http://www.pacific.net.au/                         NASDAQ:  PCNTF

home help back first fref pref prev next nref lref last post