Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




Vulnerability Development mailing list archives

Re: Asterisk ignoring replayed libpcap sessions
From: Pravin <shindepravin () gmail com>
Date: Mon, 30 Oct 2006 10:45:37 +0530

Well,
I  am not sure but, does tcpreplay takes care of sequence numbers?
May be the victim is selecting different initial sequence number everytime,
Does tcpreplay modifies the sequence number accordingly?

On 10/29/06, nnp <version5 () gmail com> wrote:
Hey,
I'm currently testing the Asterisk PBX for vulnerabilities but I just
encountered an interesting problem when trying to recreate a crash.
Using a fuzzer I can crash it in the exact same place every time. I am
recording these session using ethereal (wireshark) and then replaying
them using tcpreplay e.g

sudo tcpreplay -i lo dieAsterisk.eth

Anyways, the problem is Asterisk completely ignores the data sent to
it via tcpreplay. I'm not sure what the issue could be. The packets
replayed are identical. Is anyone aware of any checksum that takes
timing into account or whatnot in Asterisk?

Thanks,
nnp

--
http://silenthack.co.uk



--
Pravin Shinde


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]