Cisco IOS Vulnerability

Andy Dills andy at xecu.net
Thu Jul 17 19:59:32 UTC 2003


On Thu, 17 Jul 2003, Jack Bates wrote:

>
> Sean Donelan wrote:
> > Cisco stated if they receive any reports of the exploit in the wild,
> > they will re-issue the advisory with the updated information.
> >
>
> Sendmail root exploit took less than 24 hours to craft. I suspect that
> this exploit will be found within 48 hours. Enough information was
> provided to quickly guess where the problem lies with IPv4 processing.

Sendmail is open source, IOS is not.

Knowing where the problem is and knowing how to exploit it are two
entirely different situations.

Andy

---
Andy Dills
Xecunet, Inc.
www.xecu.net
301-682-9972
---




More information about the NANOG mailing list