Bugtraq mailing list archives

Re: Possible security hole


From: lincoln () hotlink com br (Cristiano Lincoln Mattos)
Date: Mon, 29 Mar 1999 08:09:03 -0300


Quoting Christoforos Karatzinis <chka () SOLUTIONS IE>:

Hi,
     The FW1 documentation clearly states that there is
a small delay after the interface initialize's and the
FW starts acting on it.  It is possible to do something
"bad" to it in this period...

Regards,
Cristiano Lincoln Mattos
Recife / Brazil

The first 25 packets were lost before the interface's
initialization. The
packets with sequence number greater than 34 are droped
from the firewall.
What about the packets with sequence number 25-34? Is it
possible that
someone can use this time (after the interface's
initialization and before
the firewall's initialization) to do something bad?

Regards,
Christofer



Current thread: