Re: TCP RST attack

From: Mark Johnston (mjohnston_at_skyweb.ca)
Date: 04/20/04

  • Next message: Dragos Ruiu: "Re: TCP RST attack"
    To: freebsd-security@freebsd.org
    Date: Tue, 20 Apr 2004 15:47:14 -0500
    
    

    "Crist J. Clark" <cristjc@comcast.net> wrote:
    > Arguments on the severity of the bug aside, FreeBSD does not
    > have a working RFC2385 implementation.

    It looks like bms@ committed half of one in February:
    http://docs.freebsd.org/cgi/getmsg.cgi?fetch=1056731+0+/usr/local/www/db/text/2004/cvs-all/20040215.cvs-all

    The vulnerability would still exist when the spoofed packets are directed
    towards a FreeBSD router, but it looks like this would protect its
    RFC2385-capable partner from the attack. That doesn't help if the attacker
    knows which side of the link is which platform, but it reduces the likelihood
    of an unresearched attack being successful.

    Mark
    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"


  • Next message: Dragos Ruiu: "Re: TCP RST attack"

    Relevant Pages

    • Re: TCP RST attack
      ... >> Arguments on the severity of the bug aside, FreeBSD does not ... > It looks like bms@ committed half of one in February: ... And is busy working on the other half as we speak. ...
      (FreeBSD-Security)
    • RE: Anthonys drive issues.Re: ssh password delay
      ... The dmesg you sent indicated that the 2 disks were negotiating at ... > possible cause in the universe before blaming it on FreeBSD. ... to take the risk of it being hardware, ... believe is that it's a bug in the FreeBSD driver. ...
      (freebsd-questions)
    • Re: What do you dislike about OSX?
      ... is is when you claim that OS X is derivative of FreeBSD. ... about *other people* not needing to have all windows visible at all times. ... Most end users don't even know the bug exists. ... offer reasons for me to change my mind. ...
      (comp.sys.mac.advocacy)
    • Re: Support for 5.x (Was: Re: What about BIND 9.3.4 in FreeBSD in base system ?)
      ... Handling other people's send-pr bug input would be boring ... I've filed some send-pr diffs years back & not seen action, ... so if the FreeBSD Foundation ever has spare ...
      (FreeBSD-Security)
    • Re: Do we need this junk?
      ... I have an 1742A if any developer needs it for bug chasing. ... It's a full length card. ... To counter Nikolas' `stats' argument to abandon much hardware support: ... There's scanners with FreeBSD embedded inside: ...
      (freebsd-current)