Bugtraq mailing list archives

Re: [EuroHaCk] Linux 2.2.x ISN vulnerability (fwd)


From: jbuhler () SPEAKEASY ORG (Jeremy Buhler)
Date: Tue, 28 Sep 1999 00:22:07 -0000


A weakness within the TCP stack in Linux 2.2.x kernels 
has been discovered. The vulnerability makes it possible
to "blind-spoof" TCP connections.

This vulnerability is fixed in kernels 2.2.13pre13 and
later.  Hopefully 2.2.13 will be released shortly and/or
the relevant patch from pre13 will be released as an
erratum versus 2.2.12.  Alan?


Current thread: