Re: known TCP vulnerability ??

From: Andy Hilker <ah_at_crypta.net>
Date: Fri, 11 Feb 2005 21:31:19 +0100
Hi,

You (Li, Qing) wrote:
>
>       http://www.kb.cert.org/vuls/id/464113
>
>       http://www.linuxsecurity.com/content/view/104980/98/
>
>       Ran the packet tests against FreeBSD 5.3 and 6-CURRENT and both
>       respond to the SYN+FIN packets with SYN+ACK.


do you have 

"options         TCP_DROP_SYNFIN" 

in your kernel config?

bye,
Andy
Received on Fri Feb 11 2005 - 19:31:23 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:38:28 UTC