Re: Zombie request-route with 2.0.31`

Alan Cox (alan@lxorguk.ukuu.org.uk)
Tue, 11 Nov 1997 11:58:06 +0000 (GMT)


> > > mechanism which can completely replace request-route and there are
> > > applications that depend on it.
> >
> > Well thats a pity, because we removed it.
>
> ...based on an invalid premise (that it would not be necessary).

Based on some valid race condition premises, and demonstrated exploit
techniques including code sent to bugtraq.

> allocate memory etc. The people who designed kerneld were not stupid
> and put some special-casing in to take care of that.

I am aware of this. In the 2.1.x routing however their rather clever special
casing just doesnt work

> > Diald is just an example of how to do it, and the same technique holds
> > for other applications
>
> Not for non-static routing.

The diald snooping approach applies for arbitary routing situations.

Alan