radmin_detect.nasl DoS-ing snmpd?

Flickema, Drew W. drew.flickema at hp.com
Mon Sep 22 18:29:01 EDT 2003


Owen-
  You have to look through the available patches for your HP system.  I
remember a discussion about Blaster causing an HP snmpd to stop
responding and a patch was released.

Drew Flickema


-----Original Message-----
From: Michel Arboi [mailto:mikhail at nessus.org] 
Sent: Monday, September 22, 2003 3:24 PM
To: nessus at list.nessus.org
Subject: Re: radmin_detect.nasl DoS-ing snmpd? [long]


"Crow, Owen" <Owen_Crow at bmc.com> writes:

> It fails when the only plugin enabled is radmin_detect.nasl.
[snip]
> And based on this, I hard-coded radmin_detect.nasl to attack port 7161

> and that caused the problem.

Well... I'd say that you found a bug in HP snmpd. 

radmin_detect is not supposed to be destructive. But just like
find_service, or even a simple port scanner, it can kill broken services
:-\



More information about the Nessus mailing list