[KLUG Members] new wireless vulnerability?

bill members@kalamazoolinux.org
Tue, 12 Aug 2003 18:18:58 -0400


I've never heard of this one, so I'd appreciate comments.  BTW, this is
unrelated to the MS RPC issue going around.

A laptop with wireless and wired connection brings two subnets down.  How did
that happen?  The laptop used WinXP Pro network wizard to connect to the local
network.  For unknown reasons the wizard created a network bridge.  Here's where
it gets interesting.

The wireless connection got an IP address from the DHCP server (Win 2k server)
and the user didn't know it.  The user connected the wired connection and it got
another IP address.  Because of the network bridge (I think), the two network
cards sucked all the IP addresses out of the system and brought it and a related
network down.

Anyone heard of anything like this before?

What would happen if a hacker connected to an available wireless network with
-two- wireless cards installed?  Would all wireless networks be vulnerable to a
similar scenario?

kind regards,

bill