[plug] local DoS with ping -R

Christian christian at global.net.au
Mon Dec 13 10:14:19 WST 1999


On Mon, 13 Dec 1999, Matt Kemner wrote:

> Warning for anybody running 2.0 and has lusers they can't trust.
> (I disabled -s on the ping binaries on my systems a while ago, to stop
> people pingflooding each other. It stops this attack too)

How do people ping flood others using /bin/ping unless they have root
access? (in which case not being setuid doesn't help.)  There was a bug
with the signal handling which allowed an effective ping flood but hasn't
this been fixed?

Regards,

Christian.

============================================================================
"Those who do not understand Unix are condemned to reinvent it, poorly."
                					-- Henry Spencer



More information about the plug mailing list