On Tue, Nov 18, 2003 at 08:11:00PM +0100, Florian Weimer wrote:
> > No. Patched systems and unpatched ones react the same way network-wise.
> > See my comment at http://cgi.nessus.org/plugins/dump.php3?id=11921
>
> In some cases, it's possible to trigger a one-byte overflow which does
> not impact a vulnerable server, but yields an error reply from a
> non-vulnerable one (because it has additional error checking).
Yes, we do that in a lot of plugins (although this usually does not work
too well against Windows and ends up being too intrusive).
> Have you
> investigated this approach?
Of course. The problem is that the overflow happens later on (after the
server sends its reply) so it's not feasible.
-- Renaud
_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus