Re: [Full-Disclosure] RealVNC 4.0 remote dos vulnerability with stupid Exploit

From: Barrie Dempster (barrie_at_reboot-robot.net)
Date: 08/31/04

  • Next message: Tig: "[Full-Disclosure] Re: Mailman results for Full-Disclosure"
    To: Orhan BAYRAK <lord@linuxmail.org>
    Date: Tue, 31 Aug 2004 09:49:59 +0100
    
    
    

    Someone else made the list aware of this last week, also providing an
    example dos exploit.

    http://lists.netsys.com/pipermail/full-disclosure/2004-August/025721.html

    Might be a good idea to search previous list messages before posting, to
    help prevent duplication of threads. :-)

    On Mon, 2004-08-30 at 22:56, Orhan BAYRAK wrote:
    >
    > if you try to about 80 or 90 conection request to the VNC server same time.. it gets crash.. i attached a stupid dos exploit for this hole..
    >

    -- 
    Barrie Dempster (zeedo) - Fortiter et Strenue
      http://www.bsrf.org.uk
    [ gpg --recv-keys --keyserver www.keyserver.net 0x96025FD0 ]
    
    

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html



  • Next message: Tig: "[Full-Disclosure] Re: Mailman results for Full-Disclosure"

    Relevant Pages

    • Re: [Full-Disclosure] Re: Stupid idea
      ... Carolyn Meinel! ... 4000+ list messages I currently have) and couldn't find any messages ... Full-Disclosure - We believe in it. ... Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)
    • Re: [Full-Disclosure] linux or windows 2003 based wardialer
      ... > You should be able to run those older DOS programs - ToneLoc, ... I don't want to have to babysit a dos box running toneloc. ... > Full-Disclosure - We believe in it. ... > Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)
    • [Full-disclosure] Cisco PIX TCP COnnection
      ... I would like more info on this DOS. ... is there a fix yet? ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Month of ActiveX Bug
      ... They found a DoS and truly have no idea whether or not it can cause ... remote code execution due to not having the knowledge/skills necessary to ... > Full-Disclosure - We believe in it. ... > Charter: http://lists.grok.org.uk/full-disclosure-charter.html ...
      (Full-Disclosure)