Re: [Full-disclosure] Cisco IOS Shellcode Presentation

From: Jason Coombs (jasonc_at_science.org)
Date: 07/29/05

  • Next message: Ron DuFresne: "Re: [Full-disclosure] Cisco IOS Shellcode Presentation"
    Date: Fri, 29 Jul 2005 11:34:58 -1000
    To: "Madison, Marc" <mmadison@fnni.com>
    
    

    Madison, Marc wrote:
    > Am I missing something here, because it seems that two vulnerabilities
    > are being discussed, one is the IPv6 DOS
    > http://www.cisco.com/warp/public/707/cisco-sa-20050729-ipv6.shtml. And
    > the other is Lynn presentation on shellcode execution via the IOS?

    Did you read the advisory? It is not solely a DoS threat.

    "Cisco Internetwork Operating System (IOS ) Software is vulnerable to a
    Denial of Service (DoS) and potentially an arbitrary code execution
    attack from a specifically crafted IPv6 packet."
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/


  • Next message: Ron DuFresne: "Re: [Full-disclosure] Cisco IOS Shellcode Presentation"

    Relevant Pages

    • Multiple PHP4/PHP5 vulnerabilities
      ... Title: Multiple PHP4/PHP5 vulnerabilities ... PHP4/PHP5 wordwrap() buffer overflow ... string break character. ... it is also possible to cause memory DoS ...
      (Bugtraq)
    • [OpenPKG-SA-2006.017] OpenPKG Security Advisory (freetype)
      ... Multiple security issues exist in the FreeType font rendering ... Service (DoS) and possibly execute arbitrary code via unknown vectors, ... Vulnerabilities and Exposures project assigned the id ... Common Vulnerabilities and Exposures project assigned the ...
      (Bugtraq)
    • [Full-Disclosure] SecurityFocus found a vulnerability in IIS
      ... > The reason the exploit caused a DoS is because the OpenSSL ... > vulnerabilities and vulnerabilities discovered by EEYE overlap. ... BID 9660 - "Microsoft IIS Unspecified Remote Denial Of Service ...
      (Full-Disclosure)
    • Re: I really do like OS X but . . .
      ... code, code which has its root origins firmly planted in DOS, Microsoft has imbued XP (and, seemingly Vista) with certain vulnerabilities that OSX doesn't share. ...
      (comp.sys.mac.advocacy)