[27782] in bugtraq

home help back first fref pref prev next nref lref last post

Re: [VulnWatch] Netscreen SSH1 CRC32 Compensation Denial of service

daemon@ATHENA.MIT.EDU (quentyn@fotango.com)
Sat Nov 9 02:37:07 2002

Message-ID: <3DC7A868.E9613FBB@fotango.com>
Date: Tue, 05 Nov 2002 11:15:52 +0000
From: quentyn@fotango.com
MIME-Version: 1.0
To: Erik Parker <erik.parker@digitaldefense.net>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Erik Parker wrote:
> 
> Discovered by: HD Moore
> Products Tested: Netscreen-25 (All models expected to be vulnerable)
> Vendor contacted: October 23rd
> Vendor confirmed: October 23rd
> CVE: CVE-2001-0144 covered this bug.


4.0.0r6 is now out ( must have been in the last 24 Hrs), it claims to
address this issue


Q

-- 
#####################
Quentyn Taylor
Sysadmin - Fotango
#####################
If Microsoft made your letter box, all some one would have to do is
write "Burn the house down"
on a piece of paper and post it through the door, and your house would
go up in flames. 
   David Ruck

home help back first fref pref prev next nref lref last post