Re: Theory Question

From: Jacques A. Vidrine (n@nectar.com)
Date: 04/08/01


Date: Sat, 7 Apr 2001 17:39:10 -0500
From: "Jacques A. Vidrine" <n@nectar.com>
To: John Howie <JHowie@msn.com>

On Sat, Apr 07, 2001 at 02:53:11PM -0700, John Howie wrote:
> In practice a machine with no IP address that just receives packets is not
> likely to be vulnerable. Crist's scenario is not a probable one (as he,
> himself, acknowledges).

Such exploits have been seen in the past, e.g. the tcpdump buffer
overrun. I guess the assumption is that your opponent is more
sophisticated than a script kiddie, and wants something in your
network.

Cheers,

-- 
Jacques Vidrine / n@nectar.com / jvidrine@verio.net / nectar@FreeBSD.org
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message


Relevant Pages

  • Re: Ruger SP101 .357 Ammo Questions.
    ... # different types of ammo. ... In a worst case scenario, it could also be a last ... Then practice, practice, ... color balloons on different sticks at different heights, ...
    (rec.guns)
  • Re: Question. on iptables concept
    ... Scenario A is where a process local to the IP Tables box is the target for packets ... coming in through a network interface. ... the local process has explicitly bound itself to the ...
    (comp.os.linux.security)
  • Re: WinXP SP2 firewall
    ... I cannot see how such a scenario could be possible already in theory. ... a "Personal Firewall" ever was useful, compared to best practice. ... "Ich bin ein freier Mensch und werde jetzt von meinen Freiheitsrechten ...
    (comp.security.firewalls)
  • endurance running
    ... This running scenario FAILS in practice, just like you can see from the ... And after all this, the horse WASN'T TIRED AT ALL, ...
    (sci.anthropology.paleo)
  • Re: DoS/DDoS Attack
    ... > able to determine the actual IP address that is sending DoS packets? ... router to router until you come to the interface where the packets are ... Then you can either identify the machine by its MAC address ... in practice that usually isn't going to happen. ...
    (Pen-Test)

Quantcast