Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 26 May 1998 22:05:42 -0500
From:      "J.A. Terranson" <sysadmin@mfn.org>
To:        "'FreeBSD Security'" <freebsd-security@FreeBSD.ORG>
Subject:   Possible DoS opportunity via ping implementation error?
Message-ID:  <01BD88F2.6DDD3A40@w3svcs.mfn.org>

next in thread | raw e-mail | index | archive | help
I had a very interesting day today!  I found out that FBSD (2.2.5R) machines will
always respond to a broadcasted echo request.  For example:

W2>ping 10.1.1.255
PING 10.1.1.255 (10.1.1.255): 56 data bytes
64 bytes from 10.1.1.20: icmp_seq=1 ttl=255 time=4.746 ms
64 bytes from 10.1.1.23: icmp_seq=1 ttl=255 time=45.864 ms (DUP!)
      lots of these dups...

In fact, 1 dup for every FBSD machine on the subnet (interestingly, there
were no replies from my NT4.0 boxes...)

Since I do not follow the "security" list, please respond directly.  Thanks.

J.A. Terranson
sysadmin@mfn.org


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?01BD88F2.6DDD3A40>