Re: Security Alert: IP Fragments of Death (fwd)

Myrdraal (myrdraal@jackalz.dyn.ml.org)
Sat, 15 Nov 1997 02:40:39 -0500


On Sat, Nov 15, 1997 at 07:22:33AM +0000, Matthew Kirkwood wrote:

Hi,
> I've heard some bad things about a box killing exploit that
> relies on a kernel buffer overrun in ip_fraqment.c, and that
> the appended patch is in 2.0.32-pre4.
Teardrop also works on NT/95, but you need to send 10-15 packets.
> If these nasty rumours are true, could an equivalent make it
> into 2.1.65?
It's already in 2.1.63.
-Myrdraal