|
BMC Patrol UDP Bounce Attack Denial of Service Vulnerability
Patrol is an enterprise management software suite offered by BMC Software. One of the Patrol components listens on a UDP port and accepts connections from any host / port by default. As a result, it may be possible for an attacker to cause a "ping pong" attack by spoofing packets so they appear to be from a host's chargen service. UDP datagrams would then bounce back and forth until the victim's network/CPU resources are exhausted. |
|
|
Privacy Statement |