Skip site navigation (1)Skip section navigation (2)
Date:      09 Feb 2000 17:45:39 +0100
From:      Dag-Erling Smorgrav <des@flood.ping.uio.no>
To:        Jim <jameso@omaha.com>
Cc:        freebsd-chat@FreeBSD.ORG
Subject:   Re: MSNBC article
Message-ID:  <xzpn1pa5npo.fsf@flood.ping.uio.no>
In-Reply-To: Jim's message of "Wed, 09 Feb 2000 09:47:27 -0600"
References:  <38A18C0F.9D482E8B@omaha.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Jim <jameso@omaha.com> writes:
> http://www.msnbc.com/msn/367495.asp
> [...]
> Comments?

It's not a vulnerability, it's a DoS. A little worse than a simple
flooder, but not much. MSNBC's explanation of how it works is
incorrect, too - what confuses the router is the destination address
on the ACK packet (since the packet it ACKs has a random source
address). There is no argument between the router and the server about
what's happening.

DES
-- 
Dag-Erling Smorgrav - des@flood.ping.uio.no


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-chat" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?xzpn1pa5npo.fsf>