[Snort-users] Re: Fw: Cisco Vulnerability Testing Results

Marc Quibell mquibell at ...7759...
Tue Jul 22 08:33:13 EDT 2003

Ahhh...shoulda read the exploit. I can see where you got the TTL 1 or 0. Cisco
says those three protocols should have those TTLs set, but it then says that,
"103 (Protocol Independent Multicast - PIM) with any TTL value", so I guess it's
 not true for all of the DoS attacks...

More information about the Snort-users mailing list