Unorthodox DoS attack on AIX and SCO OpenServer

Brian Russo brusso at phys.hawaii.edu
Tue Oct 16 07:48:33 PDT 2001


On Mon, Oct 15, 2001 at 01:45:15PM -0700, Dusty wrote:
> I just recieved confirmation about NMAP scans bringing down AIX and SCO OpenServer.  I have experienced the AIX vulnerability while working at a customer site, but my coworkers have just confirmed that SCO OpenServer is also vulnerable.  Basically a simple NMAP tcp scan will reboot an AIX system and make SCO OpenServer hang.  FYI for anyone who uses AIX or SCO OpenServer.

Is this a *NEW* set of vulnerabilities? Otherwise it's old news,
see the SecureXpert advisory from 1998 or so, it was on Bugtraq,
should be easy to google.

If it is a new vuln, do you have more information?
What versions of AIX.. what scan options.. patches available, etc.

 - bri

-- 
Unix Staff, High Energy Physics Group   <brusso at phys.hawaii.edu>
Debian/GNU Linux! http://www.debian.org <wolfie at debian.org>



More information about the LUAU mailing list