Nmap Development mailing list archives

Re: [NSE] MS08-067 check


From: Ron <ron () skullsecurity net>
Date: Sun, 09 Nov 2008 13:12:53 -0600

Ron wrote:
jah wrote:

The only thing I have left to fix on this is the issue where crashed
boxes return "not vulnerable" -- I'm trying to resolve that now, but,
naturally, I am unable to crash any of my test systems. It seems like
immediately after a reboot, the crash doesn't happen (although I could
be wrong). I'm going to leave the test boxes up overnight and hope I can
crash them in the morning (I don't count right now as morning, even if
it IS 4:45am.. :) ).


Anyway, I'd like to get the output of a -d3 and/or a pcap of the crash
so I can see what's going wrong. If somebody can crash a system with
this script, can you send me the result?

I can't avoid crashing stuff, but I'd at least like to output the proper
result if I do.

Also, the script-trace might be helpful, if you still have it.

Ron


Nevermind, I got it! I even got both my test boxes to crash at the same
time (rolls eyes):

--
Host script results:
|_ ./scripts/smb-checkvulns.nse: This host is likely vulnerable to
ms08-067 (it stopped responding during the test)
Final times for host: srtt: 16691 rttvar: 16812  to: 100000
--

Ron

-- 
Ron Bowes
http://www.skullsecurity.org/

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: