Argonne National Laboratory

Experimental Physics and
Industrial Control System

1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  <20182019  Index 1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  <20182019 
<== Date ==> <== Thread ==>

Subject: Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request]
From: Michael Davidsaver <mdavidsaver@gmail.com>
To: "J. Lewis Muir" <jlmuir@imca-cat.org>
Cc: EPICS Tech Talk <tech-talk@aps.anl.gov>
Date: Wed, 24 Jan 2018 10:13:35 -0800
On 01/24/2018 07:58 AM, J. Lewis Muir wrote:
> On 01/23, Michael Davidsaver wrote:
>> On 01/23/2018 10:54 AM, Hartman, Steven M. wrote:
>>> Nonetheless, a malformed packet crashing a server would be
>>> considered in bug in the server implementation and should be fixed.
>>
>> I don't think anyone is going to argue that these sort of issues
>> shouldn't be fixed.  The problem is as usual a question of time and/or
>> money.  Actively finding and _fixing_ packet validation issues has
>> never been a priority for anyone.
> 
> Hi, Michael!
> 
> And therein lies the problem: IMHO, it should be a priority for the
> maintainers.  If any software I write crashes due to receiving an
> invalid packet, I would consider that a bug and want to fix it.

I certainly do _want_ these fixed, and am willing to do the
work.  Sadly though, "want" does not automatically translate
into it being a priority on my TODO list (nor I think for Andrew or Ralph).

So this must be the point where I invite you to help out by
contributing time and/or money.  It doesn't have to be to me,
nor through ospreydcs.com, but it needs to be someone.
Otherwise we're left with an
https://en.wikipedia.org/wiki/Unfunded_mandate


(I would love it if someone would actually pay me to spend time on
Base maintainership work.  Handling user bug reports, reviewing code,
mentoring new developers.  When you find me doing this, consider that
it may well be on my own dime.)

References:
Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] Shuei YAMADA
Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] Ralph Lange
Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] J. Lewis Muir
Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] Ralph Lange
Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] Benjamin Franksen
Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] Hartman, Steven M.
Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] Michael Davidsaver
Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] J. Lewis Muir

Navigate by Date:
Prev: Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] Mark Rivers
Next: device support for bidirectional records Thomas, Patrick
Index: 1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  <20182019 
Navigate by Thread:
Prev: Re: Port scan with nmap causes infinite loop in casDGClient::processDG() [Re: CA gatway runs away when zero length PV name in UDP search request] J. Lewis Muir
Next: EPICS-DAQmx App Build Issues on cygwin-x86_64 Arnab Dasgupta
Index: 1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  <20182019 
ANJ, 24 Jan 2018 Valid HTML 4.01! · Home · News · About · Base · Modules · Extensions · Distributions · Download ·
· Search · EPICS V4 · IRMIS · Talk · Bugs · Documents · Links · Licensing ·