[27782] in bugtraq
Re: [VulnWatch] Netscreen SSH1 CRC32 Compensation Denial of service
daemon@ATHENA.MIT.EDU (quentyn@fotango.com)
Sat Nov 9 02:37:07 2002
Message-ID: <3DC7A868.E9613FBB@fotango.com>
Date: Tue, 05 Nov 2002 11:15:52 +0000
From: quentyn@fotango.com
MIME-Version: 1.0
To: Erik Parker <erik.parker@digitaldefense.net>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Erik Parker wrote:
>
> Discovered by: HD Moore
> Products Tested: Netscreen-25 (All models expected to be vulnerable)
> Vendor contacted: October 23rd
> Vendor confirmed: October 23rd
> CVE: CVE-2001-0144 covered this bug.
4.0.0r6 is now out ( must have been in the last 24 Hrs), it claims to
address this issue
Q
--
#####################
Quentyn Taylor
Sysadmin - Fotango
#####################
If Microsoft made your letter box, all some one would have to do is
write "Burn the house down"
on a piece of paper and post it through the door, and your house would
go up in flames.
David Ruck