Re: Linux Kernel 2.2.13 shooting Solaris ADSM server

Dominik Kubla (dominik.kubla@uni-mainz.de)
Thu, 23 Dec 1999 01:20:28 +0100


On Wed, Dec 22, 1999 at 01:36:28AM +0000, Alan Cox wrote:
> Take a tcpdump of the failure case. Make sure its repeatable. Post a
> message to the IBM security contact point about it then post info about
> the denial of serivce attack against the IBM ADSM you found to bugtraq.
>
> Wait a couple of days for IBM to recover 8)
>
> Alan

I don't think this is necessary: If i am not experiencing a time warp, then
this is already known and fixed for ADSM on AIX. Last time some 2.1.1xx-ac
release triggered it IIRC.
It is a buffer overflow in the ADSM server when a OS version longer than 8
chars is reported by the client to the server.

Yours,
Dominik Kubla

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/