[luau] Cisco IOS bug

Mark Pettit mark at pettit.org
Tue Jul 22 01:46:01 PDT 2003


And if anyone wants a copy of the script, it's publically available at
your nearest bugtraq archive, or if there is sufficient interest,
perhaps someone will post it to this list to show just how easy it is
to crash a Cisco router.

-- 
Mark K. Pettit
mark at pettit.org

_______________________________________________________________________________
From: Vince Hoang <luau at ml.altern8.net>
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
User-Agent: Mutt/1.4i
Sender: luau-admin at videl.ics.hawaii.edu
X-BeenThere: luau at videl.ics.hawaii.edu
X-Mailman-Version: 2.0.13
Precedence: bulk
Reply-To: luau at videl.ics.hawaii.edu
X-Reply-To: luau at videl.ics.hawaii.edu
List-Help: <mailto:luau-request at videl.ics.hawaii.edu?subject=help>
List-Post: <mailto:luau at videl.ics.hawaii.edu>
List-Subscribe: <http://videl.ics.hawaii.edu/mailman/listinfo/luau>,
        <mailto:luau-request at videl.ics.hawaii.edu?subject=subscribe>
List-Id: Linux & Unix Advocates & Users Hawaii community discussion list <luau.videl.ics.hawaii.edu>
List-Unsubscribe: <http://videl.ics.hawaii.edu/mailman/listinfo/luau>,
        <mailto:luau-request at videl.ics.hawaii.edu?subject=unsubscribe>
List-Archive: <http://videl.ics.hawaii.edu/pipermail/luau/>
X-Original-Date: Mon, 21 Jul 2003 23:20:30 -1000
Date: Mon, 21 Jul 2003 23:20:30 -1000
X-Spam-Status: No, hits=-3.4 required=5.0
        tests=KNOWN_MAILING_LIST,USER_AGENT_MUTT
        autolearn=ham version=2.55
X-Spam-Level: 
X-Spam-Checker-Version: SpamAssassin 2.55 (1.174.2.19-2003-05-19-exp)

If anyone is running Cisco, you will want to seriously consider
upgrading your IOS version or adding some ACLs at your border
routers until you do. With hping and a short shell script, you
can cripple an unpatched router.

http://www.cisco.com/warp/public/707/cisco-sa-20030717-blocked.shtml

This was all announced last week by many different outlets
(Bugtraq, CERT, Slashdot, ad nauseum), but I figure some folks on
the list would find this valuable.

So I can get a sense the intereset, private comments are
encouraged, despite this message lacking some ob-open source
content.

-Vince
_______________________________________________
LUAU mailing list
LUAU at videl.ics.hawaii.edu
http://videl.ics.hawaii.edu/mailman/listinfo/luau





More information about the LUAU mailing list