Package: dsniff
Version: 2.4b1+debian-15
Severity: grave
Justification: renders package unusable



-- System Information:
Debian Release: 4.0
  APT prefers testing
  APT policy: (500, 'testing'), (500, 'stable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-4-686
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)

Versions of packages dsniff depends on:
ii  libc6                       2.3.6.ds1-13 GNU C Library: Shared libraries
ii  libdb4.3                    4.3.29-8     Berkeley v4.3 Database Libraries [
ii  libnet1                     1.1.2.1-2    library for the construction and h
ii  libnids1.20                 1.20-4       IP defragmentation TCP segment rea
ii  libpcap0.8                  0.9.5-1      System interface for user-level pa
ii  libssl0.9.8                 0.9.8c-4     SSL shared libraries
ii  openssl                     0.9.8c-4     Secure Socket Layer (SSL) binary a

dsniff recommends no packages.

-- no debconf information

# dsniff -d
dsniff: trigger_set_tcp: port 21 -> ftp
dsniff: trigger_set_tcp: port 23 -> telnet
dsniff: trigger_set_tcp: port 25 -> smtp
dsniff: trigger_set_ip: proto 47 -> pptp
dsniff: trigger_set_tcp: port 80 -> http
dsniff: trigger_set_ip: proto 89 -> ospf
dsniff: trigger_set_tcp: port 98 -> http
dsniff: trigger_set_tcp: port 106 -> poppass
dsniff: trigger_set_tcp: port 109 -> pop
dsniff: trigger_set_tcp: port 110 -> pop
dsniff: trigger_set_tcp: port 111 -> portmap
dsniff: trigger_set_tcp: port -111 -> portmap
dsniff: trigger_set_udp: port 111 -> portmap
dsniff: trigger_set_udp: port -111 -> portmap
dsniff: trigger_set_ip: proto 112 -> vrrp
dsniff: trigger_set_tcp: port 119 -> nntp
dsniff: trigger_set_tcp: port 139 -> smb
dsniff: trigger_set_tcp: port 143 -> imap
dsniff: trigger_set_udp: port 161 -> snmp
dsniff: trigger_set_tcp: port 220 -> imap
dsniff: trigger_set_tcp: port 261 -> telnet
dsniff: trigger_set_tcp: port 389 -> ldap
dsniff: trigger_set_tcp: port 417 -> mmxp
dsniff: trigger_set_udp: port 417 -> mmxp
dsniff: trigger_set_tcp: port 512 -> rlogin
dsniff: trigger_set_tcp: port 513 -> rlogin
dsniff: trigger_set_tcp: port 514 -> rlogin
dsniff: trigger_set_udp: port 520 -> rip
dsniff: trigger_set_tcp: port 587 -> smtp
dsniff: trigger_set_tcp: port 1080 -> socks
dsniff: trigger_set_tcp: port 1433 -> tds
dsniff: trigger_set_udp: port 1433 -> tds
dsniff: trigger_set_tcp: port 1494 -> citrix
dsniff: trigger_set_tcp: port 1521 -> oracle
dsniff: trigger_set_tcp: port 1526 -> oracle
dsniff: trigger_set_udp: port 2001 -> sniffer
dsniff: trigger_set_tcp: port 2401 -> cvs
dsniff: trigger_set_tcp: port 2417 -> mmxp
dsniff: trigger_set_udp: port 2417 -> mmxp
dsniff: trigger_set_tcp: port 2638 -> tds
dsniff: trigger_set_tcp: port 3128 -> http
dsniff: trigger_set_udp: port 4000 -> icq
dsniff: trigger_set_tcp: port 4444 -> napster
dsniff: trigger_set_tcp: port 5190 -> aim
dsniff: trigger_set_tcp: port 5432 -> postgresql
dsniff: trigger_set_tcp: port 5555 -> napster
dsniff: trigger_set_tcp: port 5631 -> pcanywhere
dsniff: trigger_set_tcp: port 6000 -> x11
dsniff: trigger_set_tcp: port 6001 -> x11
dsniff: trigger_set_tcp: port 6002 -> x11
dsniff: trigger_set_tcp: port 6003 -> x11
dsniff: trigger_set_tcp: port 6004 -> x11
dsniff: trigger_set_tcp: port 6005 -> x11
dsniff: trigger_set_tcp: port 6666 -> napster
dsniff: trigger_set_tcp: port 6667 -> irc
dsniff: trigger_set_tcp: port 6668 -> irc
dsniff: trigger_set_tcp: port 6669 -> irc
dsniff: trigger_set_tcp: port 7599 -> tds
dsniff: trigger_set_tcp: port 7777 -> napster
dsniff: trigger_set_tcp: port 8080 -> http
dsniff: trigger_set_tcp: port 8888 -> napster
dsniff: trigger_set_tcp: port 9898 -> aim
dsniff: trigger_set_tcp: port 65301 -> pcanywhere
dsniff: trigger_set_rpc: program 100005 -> mountd
dsniff: trigger_set_rpc: program 100004 -> ypserv
dsniff: trigger_set_rpc: program 100009 -> yppasswd
dsniff: listening on eth0


And that's it. If I make authenticated ftp connections or get mail via clear 
text pop3 protocol authentication on the 
computer where dsniff runs on , dsniff does not show any results. I have only 
one NIC: eth0.

# tcpdump -x -X -s 0 port 110

does fetch the data but dsniff does not.

I run dsniff on Debian sarge on the same computer and there it worked.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to