Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

BMC Patrol UDP Bounce Attack Denial of Service Vulnerability

Patrol is an enterprise management software suite offered by BMC Software. One of the Patrol components listens on a UDP port and accepts connections from any host / port by default. As a result, it may be possible for an attacker to cause a "ping pong" attack by spoofing packets so they appear to be from a host's chargen service. UDP datagrams would then bounce back and forth until the victim's network/CPU resources are exhausted.







 

Privacy Statement
Copyright 2009, SecurityFocus