severity 340186 important
thanks, mate

Hi Malcolm,

On Mon, Nov 21, 2005 at 06:11:16PM -0000, [EMAIL PROTECTED] wrote:
> Package: zeroconf
> 
> 
> The check_arp_conflict logic is inappropriately narrow. As the RFC section 
> 2.5 says, it should detect a conflict if ANY ARP packet is received bearing 
> another hardware address but the same IP address.

Thanks for taking the time to report this bug. I've increased the
severity of this too.

> 
> Unfortunate consequences of this include:
>  
> 
> - While attempting to probe for an address already in use (using the -ip 
> option), we will not detect that the address is already in use. Thus the host 
> which had that address first is incorrectly forced to give it up.
> 
>  
> 
> - If another host is manually configured with the same address that we are 
> using, we will never detect this. We should have detected it the moment that 
> the host sent out its first ARP request.

Actually this looks like a problem in the defence code which I am
looking at at the moment.

I'll review both pieces and hope to have something ready shortly.

Would you be willing to do some testing if I get some packages ready?

Thanks,
Anand

-- 
 `When any government, or any church for that matter, undertakes to say to
  its subjects, "This you may not read, this you must not see, this you are
  forbidden to know," the end result is tyranny and oppression no matter how
  holy the motives' -- Robert A Heinlein, "If this goes on --"


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to