Computer Security
[EN] securityvulns.ru
no-pyccku







cc:mail trivial DoS attack - self mailbombing.




cc:mail trivial DoS attack - self mailbombing.




=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

Date: Ср, 15 сен 1999  21:35:50
  От: Alan Brown <alan@MANAWATU.GEN.NZ>
Кому: BUGTRAQ@SECURITYFOCUS.COM
Тема: cc:mail trivial DoS attack - self mailbombing.
--------------------------------------------------------------------------------


This seems to work on most cc:mail installations

Send mail to postmaster@[x.x.x.x] where x.x.x.x is the IP address of the
server.

In most cases, the machine will mailbomb itself into the ground
with undeliverable mail messages.

For bonus points, use a bogus, undeliverable sender envelope and watch
it crash even faster.

In some cases, postmaster@rDNS.name will have the same effect, depending
how badly setup the server is.

Script kiddies may like to have fun by using a sender envelope belonging
to someone else. One case I've seen resulted in the machine sending over
5800 "postmaster: No such user" errors for one message sent to it.

AB


About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru