Re: FreeBSD Security Advisory FreeBSD-SA-04:04.tcp

From: Gordon Bergling (gbergling_at_0xfce3.net)
Date: 03/03/04

  • Next message: Jacques A. Vidrine: "Re: FreeBSD Security Advisory FreeBSD-SA-04:04.tcp"
    Date: Wed, 3 Mar 2004 12:04:05 +0100
    To: FreeBSD Security <freebsd-security@freebsd.org>
    
    
    

    Hi,

    On Tue Mar 02, 2004 at 11:55AM -0800, FreeBSD Security Advisories wrote:
    > -----BEGIN PGP SIGNED MESSAGE-----
    > Hash: SHA1
    >
    > =============================================================================
    > FreeBSD-SA-04:04.tcp Security Advisory
    > The FreeBSD Project
    >
    > Topic: many out-of-sequence TCP packets denial-of-service
    >
    > Category: core
    > Module: kernel
    > Announced: 2004-03-02
    > Credits: iDEFENSE
    > Affects: All FreeBSD releases
    > Corrected: 2004-03-02 17:19:18 UTC (RELENG_4)
    > 2004-03-02 17:24:46 UTC (RELENG_5_2, 5.2.1-RELEASE-p1)
    > 2004-03-02 17:26:33 UTC (RELENG_4_9, 4.9-RELEASE-p3)
    > 2004-03-02 17:27:47 UTC (RELENG_4_8, 4.8-RELEASE-p16)
    > CVE Name: CAN-2004-0171
    > FreeBSD only: NO

    Is there any chance to get this fixed in RELENG_5_1?

    best regards,

            Gordon

    -- 
    Gordon Bergling <GBergling@0xfce3.net>	      http://www.0xFCE3.net/
    PGP Fingerprint:  7732 9BB1 5013 AE8B E42C  28E0 93B9 D32B C76F 02A0
    RIPE-HDL: MDTP-RIPE		"There is no place like 127.0.0.0/8"
    
    



  • Next message: Jacques A. Vidrine: "Re: FreeBSD Security Advisory FreeBSD-SA-04:04.tcp"

    Relevant Pages

    • Re: Fast releases demand binary updates.. (Was: Release schedule for 2006)
      ... IPsec is trivial compared to the amount of code and localized databases we ... > In general core IS silent. ... > how FreeBSD "works". ... Installation ...
      (freebsd-stable)
    • Re: Fast releases demand binary updates.. (Was: Release schedule for 2006)
      ... > stop talking about core... ... about the FreeBSD project. ... > As for the whole installation thing, you need to talk with re (release ... > they'll commit any budget to it... ...
      (freebsd-stable)
    • Re: Why userland , basesystem and Kernel are together?!
      ... self-contained applications that don't touch any of the core libraries ... Core system- This one can likely be argued a bit with bsd (and ... you wouldn't be very likely able to even install userland apps as libc ... >distributing, fetching, and applying binary security updates for FreeBSD. ...
      (freebsd-questions)
    • Re: is THIS why the 6.2 release seems stalled ?
      ... You are mixing the Core team with the Release Engineering team. ... The rest of the bullet items you posted about (Xen Dom0 support; ... As you know (being a long-time FreeBSD user), ... The FreeBSD Java project and the FreeBSD Foundation have been working ...
      (freebsd-questions)
    • Re: named.conf: query-source address
      ... can get answers to anything bind-related, and there are plenty of people knowledgeable about running it on freebsd on that list even if I don't get a chance to answer first. ... Of course there are also plenty of resources, the most important being "DNS and BIND, 5th Edition." ... Most of us have long ago lost our ability to see things the way the mythical "average user" does, so that kind of feedback is very valuable. ...
      (freebsd-stable)