[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

IGMP fragmentation bug in Windows 98/2000



Windows 98's TCP/IP stack chokes on fragmented IGMP packets. There is an
exploit out there called "fawx" that supposedly exploits this problem,
but I haven't had any success crashing Windows with it. Recently I was
given source to a program that reliably crashed Win98/98SE/2000 build 2000
and challenged my friend defile to see who could write a version of it
utilizing handcrafted igmp/ip headers for source spoofing support. Here is
the resulting code that works against most systems with one or two tries.

  [Part 2, ""  Text/PLAIN  96 lines]
  [Unable to print this part]