On 10/09/07 14:24, Kevin Mc Grath wrote:

> I have narrowed this problem to 3 plugins. To reproduce the fault
> three plugins must be enable. The plugins are the Nessus TCP Scanner,
> the BakBone NetVault Remote Heap Overflow Vulnerabilities (Plugin ID:
> 10605) and BIND vulnerable to overflows (Plugin ID: 18257). 

Actually, the plugin ids are reversed.

> My question is. Why do these particular plugins depend on each other
> to reproduce the fault. Note that max_checks is set to 1. When anyone
> of these plugins is disabled the device does not enter an error state.

Have you checked whether plugin #18257 by itself is sufficient to 
trigger the crash? I just updated it to make use of any version number 
info the detection plugin manages to gather, but I wonder if the packet 
the plugin was sending to ports with unknown services was leading to the 
problem.

George
-- 
[EMAIL PROTECTED]
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to