[Pkg-shadow-devel] Bug#505071: login tty mis-determination (see bug#332198)

Paul Szabo psz at maths.usyd.edu.au
Fri Jan 23 02:58:26 UTC 2009


Hmm... could we use Samba for a DoS against login? On a PC log in to
Samba, then "kill -9 PID-of-my-smbd" to leave one utmp entry behind.
Samba will automatically re-spawn a new smbd, then kill that... I do
not yet know how large is the ut_id space used by samba (whether this
could exhaust a significant proportion of PID space).

Cheers,

Paul Szabo   psz at maths.usyd.edu.au   http://www.maths.usyd.edu.au/u/psz/
School of Mathematics and Statistics   University of Sydney    Australia





More information about the Pkg-shadow-devel mailing list