Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 19 Nov 2004 09:41:10 +0000
From:      Xin LI <delphij@FreeBSD.org>
To:        Josef El-Rayes <josef@FreeBSD.org>
Cc:        cvs-all@FreeBSD.org
Subject:   Re: cvs commit: src/usr.sbin/pppd cbcp.c
Message-ID:  <20041119094110.GA52399@hub.freebsd.org>
In-Reply-To: <20041118153825.GA12893@daemon.li>
References:  <200411181521.iAIFLCJ3062379@repoman.freebsd.org> <20041118153825.GA12893@daemon.li>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, Nov 18, 2004 at 03:38:25PM +0000, Josef El-Rayes wrote:
> Xin LI <delphij@FreeBSD.org>:
> >   Correct a potential DoS vulnerability, as described at
> >   
> >   http://www.securityfocus.com/archive/1/379450
> 
> This advisory is incorrect.
> 
> It is actually not a DoS vulnerability as the attacker
> can only kill the connection to him, not others,

Hmm... Thanks for pointing this out.  Do I need to do a forced
commit to explain this?

Cheers,



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20041119094110.GA52399>