ifconfig, when used on the Linux kernel 2.2 and later, does not report when the network interface is in promiscuous mode if it was put in promiscuous mode using PACKET_MR_PROMISC, which could allow attackers to sniff the network without detection, as demonstrated using libpcap.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2002-07/0279.html | mailing list |
http://online.securityfocus.com/archive/1/284142 | mailing list |
http://www.securityfocus.com/bid/5304 | vdb entry patch |
http://online.securityfocus.com/archive/1/284257 | mailing list |
http://www.iss.net/security_center/static/9676.php | vdb entry |