Re: FreeBSD Security Advisory FreeBSD-SA-22:15.ping

Dev Null <[email protected]>
Newsgroups gmane.os.freebsd.security.general
Message-ID <[email protected]>
Easily to exploit in a test environment, but difficult to be exploited 
in the wild, since the flaw only can be exploited in the ICMP reply, so 
the vulnerable machine NEEDS to make an ICMP request first.

The attacker in this case, send a short reader in ICMP reply.

-- Rafael Grether


On 30/11/22 10:01, mike tancsa wrote:
>
> How likely is this bug exploited ?  I am guessing Man-in-the-middle 
> makes this a little more of an issue potentially
>
>     ---Mike
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.