[Raw Msg Headers][Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: 2.99.55 caused DoS attack



On Mon, Apr 14, 2003 at 12:52:11PM +0400, Eugene Crosser wrote:
> On Fri, 2003-04-11 at 22:21, Roy Bixler wrote:
> > My day today has been rather "interesting" so far.  Campus networking
> > twice had to disable the network port for our Z-Mailer 2.99.55 mail
> > server due to DoS attack on their name servers.
> 
> The function that creates bounce report uses dns to find *local* host
> name.  If you have several entries in the "search" line, it issues as
> many DNS requests.  This is the fix that I use here:

  Right.  Now that you mentioned this again...
  I applied this.

  Reading the ChangeLog, I think the busy-loop-like thing is likely
  fixed in  2.99.55-patch1

> Index: libc/myhostname.c
...
> -- 
> Eugene Crosser, head of Internet Applications section, +7 501 787 1000
> ROL, Teleross, Golden Telecom, http://user.rol.ru/~crosser/

/Matti Aarnio
-
To unsubscribe from this list: send the line "unsubscribe zmailer" in
the body of a message to majordomo@nic.funet.fi