Novell Netware 4.11 and 5.0 vulnerable to echo/chargen attack.
21 Oct. 1998
Summary
Novell Netware that has TCP/IP services installed on it (tcpip.nlm) is vulnerable to a Denial of Service attack where a chargen session is linked with an echo session causing a massive buildup in the CPU usage.
Novell Netware 4.11 and 5.0 has two services called chargen and echo which can not be turned off. These two services are subject to an old Denial of Service attack, and Novell was informed about this.
The Denial of Service can be avoided by installing IP Packet filtering services on the Novell server.