OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Jarosław Zachwieja (grokmhd.pl)
Date: Wed Jun 06 2001 - 09:31:49 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Hello,

    xfs from the package XFree86-xfs-4.0.1-1 (i386.rpm), RedHat 7.0 seems to
    suffer from a Denial of Service attack.
    To cause xfs to stop responding for requests, try to do the fillowing:

    $ telnet victim xfs </dev/urandom

    Repeat about 100 (or 1000) times and you get Connection refused message.

    Regular Xservers can no longer connect, usually crash stating Could not open
    default font 'fixed' and probably get disabled for 5 minutes if run from
    inittab.

    I'd appreciate any succesfull/unsuccesfull attemps of reproducing this
    behaviour.

    Regards,

    --
    Valentine M. Smith