Skip to content

Dev Night - CVE-2022-47929: traffic control noqueue no problem?

Photo of SGFDevs
Hosted By
SGFDevs
Dev Night - CVE-2022-47929: traffic control noqueue no problem?

Details

### CVE-2022-47929: traffic control noqueue no problem? Presentation by Frederick Lawler

One day I received a ticket to solve a null dereference bug that is reproducible with a well-crafted string of bash commands. Little did I know that this ticket would result in my first unprivileged denial of service attack.

Through this talk, I would like to share the story of how simple coding mistakes can introduce a denial of service attack that can easily take a shared-hosting provider offline, or scare your friends.

In this talk I will cover:
How the null dereference pointer happened
How I debugged it
How I created & executed the attack
What I did to fix the bug
What you can do to prevent similar attacks
-----

IN-PERSON at efactory - CoxHealth Innovation room
LIVE STREAM at SGF Devs on Twitch

Agenda
6:00pm - Networking and food (Pizza/Soda/BYOB)
6:30pm - Announcements & Live Stream Starts
6:45pm - Session starts
8:00pm - Wrap-up & Close up shop

Have an idea for Dev Night? Let us know!

Photo of Springfield Devs group
Springfield Devs
See more events
efactory
405 N Jefferson Ave · Springfield, MO