Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: Denial of service attack against tcpdump

Re: Denial of service attack against tcpdump

From: Gerald Combs <gerald_at_ZING.ORG>
Date: Wed, 3 May 2000 22:15:13 -0500

On Tue, 2 May 2000 bretonh_at_PARANOIA.PGCI.CA wrote:

> Greetings.
>
> There is a way to disable tcpdump running on a remote host. By sending a
> carefully crafted UDP packet on the network which tcpdump monitors, it is
> possible, under certain circonstances, to make tcpdump fall into an infinite
> loop.

A fix for this is in the current tcpdump CVS tree at www.tcpdump.org, but
it doesn't appear to be in the 3.5 alpha release. This has also been
fixed in the latest version of Ethereal (0.8.7).
Received on May 06 2000

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos